• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer

My TechDecisions

  • Best of Tech Decisions
  • Topics
    • Video
    • Audio
    • Mobility
    • Unified Communications
    • IT Infrastructure
    • Network Security
    • Physical Security
    • Facility
    • Compliance
  • RFP Resources
  • Resources
  • Podcasts
  • Project of the Week
  • About Us
    SEARCH
Compliance

What Every Company Needs To Know About GDPR

Even though GDPR is being instituted by European Union countries, all companies conducting business there are affected, and could lose millions if compliance isn’t followed.

February 21, 2018 TechDecisions Staff 1 Comment

According to CSO, companies that collect data on citizens in European Union (EU) countries will need to comply with new rules on protecting customer data by May 25, 2018. These rules, called the General Data Protection Regulation (GDPR), will set new standards for protecting consumers’ data.

The GDPR was adopted by European Parliament in April 2016, replacing data regulations instituted in 1995. GDPR “carries provisions that require businesses to protect the personal data and privacy of EU citizens for transactions that occur within EU member states. The GDPR also regulates the exportation of personal data outside the EU.”

The challenge with GDPR, CSO reports, is that its rules will leave “much to interpretation:” “It says that companies must provide a “reasonable” level of protection for personal data, for example, but does not define what constitutes ‘reasonable.’” This gives GDPR representatives plenty of leeway for assessing fines for breaches and noncompliance.

CSO says that fines for companies that are not compliant with GDPR can cost up to €20 million, or $24 million, or four percent of global annual turnover – whichever is higher. CSO also pointed to a report by Ovum stated that 52 percent of companies believe they will be fined for non-compliance.

The companies that will be affected by the GDPR include those with a presence in EU countries, companies that are located outside of the EU but that do business in it, has more than 250 employees, or has fewer than 250 employees but its data-processing impact individuals’ personal data. According to CSO, this “effectively means almost all companies.”

What decision makers need to know:

Even though the pressure to get a company compliant with GDPR by the May 25 deadline seems daunting, CSO outlines steps that can be made to speed up the process:

  • Increase compliance awareness with company leaders, and develop a sense of urgency
  • Involve all stakeholders – Decision makers might consider initiating a taskforce that “includes marketing, finance, sales, operations—any group within the organization that collects, analyzes, or otherwise makes use of customers’ [personal information].” CSO says that a task force can more effectively share information that can help with implementing necessary compliance procedures, and better prepare the company as a whole.
  • Conduct risk assessment, which includes exploring where all personal data is being stored within the company, and how; this even includes data stored on mobile devices. Missing any data increases the risk of noncompliance, CSO says.
  • Hire a data protection officer (DPO), or someone who works part time, or even a consultant (virtual DPO).
  • Create a data protection plan to mitigate risk, and report your compliance progress. This also includes testing incident response plans, and setting up ongoing assessment to ensure compliance consistency, and ongoing success for the business.

If you enjoyed this article and want to receive more valuable industry content like this, click here to sign up for our digital newsletters!

Tagged With: Data Collection, Internet

Related Content:

  • White House AI Regulations, ChatGPT, Generative AI 5 Things You Need to Know About the…
  • DDoS, NETSCOUT Arbor Insight 7 Layers of DDoS Attacks and How To…
  • cyber-attack-skull Spike in Cyberattacks Exposes Vulnerabilities in University Security…
  • Google, Bard Google: Bard Now 30% Better at Computation-Based Problems

Free downloadable guide you may like:

  • ChatGPT, generative AI, enterprise, workplaceBlueprint Series: ChatGPT and Generative AI in the Workplace

    This latest release of the TechDecisions Blueprint Series explores the new phenomenon of tools such as ChatGPT and how IT leaders should go about deploying generative AI in their organizations.

Reader Interactions

Trackbacks

  1. Not Opening Your Emails? Here’s How That’s Killing Business - My TechDecisions says:
    July 3, 2018 at 10:00 am

    […] makers should keep in mind that this trend in customers ignoring emails has increased since GDPR, which launched in the European Union this past May. “Under these regulations, companies are […]

    Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Latest Downloads

Practical Design Guide for Office Spaces
Practical Design Guide for Office Spaces

Recent Gartner research shows that workers prefer to return to the office for in-person meetings for relevant milestones, as well as for face-to-fa...

New Camera Can Transform Your Live Production Workflow
New Camera System Can Transform Your Live Production Workflow

Sony's HXC-FZ90 studio camera system combines flexibility and exceptional image quality with entry-level pricing.

Creating Great User Experience and Ultimate Flexibility with Clickshare

Working and collaborating in any office environment today should be meaningful, as workers today go to office for very specific reasons. When desig...

View All Downloads

Would you like your latest project featured on TechDecisions as Project of the Week?

Apply Today!

More from Our Sister Publications

Get the latest news about AV integrators and Security installers from our sister publications:

Commercial IntegratorSecurity Sales

AV-iQ

Footer

TechDecisions

  • Home
  • Welcome to TechDecisions
  • Contact Us
  • Comment Guidelines
  • RSS Feeds
  • Twitter
  • Facebook
  • Linkedin

Free Technology Guides

FREE Downloadable resources from TechDecisions provide timely insight into the issues that IT, A/V, and Security end-users, managers, and decision makers are facing in commercial, corporate, education, institutional, and other vertical markets

View all Guides
TD Project of the Week

Get your latest project featured on TechDecisions Project of the Week. Submit your work once and it will be eligible for all upcoming weeks.

Enter Today!
Emerald Logo
ABOUTCAREERSAUTHORIZED SERVICE PROVIDERSYour Privacy ChoicesTERMS OF USEPRIVACY POLICY

© 2025 Emerald X, LLC. All rights reserved.