
Explore data protection regulations, its background, and ideas: personal data, data protection principles, enhanced rights, processor liability, a data protection officer, privacy impact assessments, breach notifications, and ICO fines.
Discover how the GDPR enforces accountability and data protection principles: lawful, fair, and transparent processing; purpose limitation, data minimization, accuracy, storage limits, privacy notices, and consent, with stronger rights.
Explore how the GDPR broadens personal data to include IP addresses and cookies, expands special categories to genetic and biometric data, and promotes anonymized or pseudonymized processing.
Explain how consent under GDPR must be clear and positive at data collection, with transparent notices, granular rights, and verifiable rights to access and portability.
Explore enhanced individual rights under the GDPR, including data portability, the right to rectify and be forgotten, and restrictions on processing, with emphasis on compliance and data subject control.
The GDP extends liability to data processors and data controllers, requiring suppliers to assess compliance, amend contracts, perform privacy impact assessments, and face fines for noncompliance.
Public authorities must appoint a data protection officer under the general data protection regulation to monitor regular and systematic processing of personal data at scale and drive assurance.
The GDPR mandates privacy impact assessments (PIAs) to weigh privacy breach risks and ensure protections for personal identifiable information, with collaboration from the data protection officer.
Explore how the European data protection regulation standardizes data breach notifications across Europe, requires 72-hour reporting, and highlights detection, response, policy updates, training, and reducing fines.
Examine the GDPR's background and core principles, including personal data scope, consent, enhanced rights, and processor liability with data protection officer duties, plus privacy impact assessments and breach notification minimization.
Information Commissioner's Office guides GDPR readiness with 12 steps for schools and an awareness campaign, plus information audits and rights under the legislation, with detailed examination of each.
The General Data Protection Regulations (GDPR) are a new set of European Union regulations designed to protect the personal data of EU citizens.
GDPR has far reaching implications for all organisations handling personal data. And organisations have until 25 May 2018 to become complaint with the new regulations.
GDPR will apply to all 'public bodies and authorities', the definition of which is likely to be that used for the Freedom of Information purposes. This includes local authorities, universities, publicly funded museums, state schools and NHS trusts.
GDPR allows any European protection authority to take action against organisations, regardless of where they are based. And enforcement is backed by fines of up to 20 million euros or 4% of group annual global turnover.
Learn about the GDPR in this course. Find out what it is, what is new, and why you need to know about it.