SlideShare ist ein Scribd-Unternehmen logo
1 von 19
Downloaden Sie, um offline zu lesen
Gearing Up for EU GDPR
Compliance in the Cloud
1
Presenters
2
Jennifer Sand
VP of Product Management,
CloudLock
Russell Miller
Director of Product Marketing,
CloudLock
Andrew Dyson
Partner, DLA Piper
Continuing Professional Education (CPE) Credits
Claim your CPE credit for attending this webinar
https://www.isc2.org/
For more information or questions please contact us
info@cloudlock.com
3
Agenda
01
02
03
04
What is happening when
What do you need to know?
What do you need to do today?
What do you need to do in the next 2 years?
4
05 Questions
EU GDPR Timeline
555
https://www.dlapiper.com/en/uk/focus/eu-data-protection-regulation/background/
EU GDPR vs. Privacy Shield
666
777
8 New Provisions
1 No ambiguity. One law across all 28 countries of the EU.
2 The law is global.
3 Increased fines. Up to 4% of global turnover or €20,000,000.
4 Breach notification. Mandatory within 72 hours.
5 New individual rights.
6 Liability extended to data processors as well as data controllers.
7 Information governance through the supply chain.
8 Privacy by design.
888
Who This Applies To
European offices Hold data on EU residents
Every Company Uses Cloud Services
999
1010
What You Need to Know
Where
What How
1111
What is Required
Appropriate Security
Measures
Restrict Onward
Transfers
Access/Manipulate
Data
Sensitive Data is Out There
12
** CloudLock Cybersecurity Report: The Extended Parameter
A New Operating Paradigm
1313
Internal
governance
Transparency
Customer
controls
Incident
management
Audit
Data protection
officer
Disclosure of supply
chain/transfer terms
Minimise level of
data processed
Routine risk
assessments/audits
Formal breach
management
processes
Internal training/
audit & review
Internal register of
processing
Regulate who and
how processed
Manage Offshore
data transfers
Appropriate security
measures
EC Approved “Model
Clauses”
EC approved
Country
141414
Appropriate Security Measures in The Cloud
Automatic
Detection of
Personal
Data
Automated
Action
Employee
Involvement
Cloud Vendor Readiness Questions
Add bit.ly
151515
Dedicated Security Team?
Systems subjected to
penetration testing?
Terms for ownership of data?
Share most recent
vulnerability scan
results?
Formal procedure for reporting
a suspected security violation?
Access security of data facilities?
http://bit.ly/cloud-questions
What is security policy?
161616
What You Need to Do - Today
Tomorrow’s Task:
5
MAY
1 Document where
and who process
data
2 Audit and Prioritize
Cloud Vendors
3 Consider
technology at hand
171717
Do you comply?
bit.ly/cloudlock-assessment
Come See Us At:
7-9 June
Olympia, London
Booth D202
Thank You
Questions & Answers
www.cloudlock.com info@cloudlock.com 781.996.4332
21

Weitere ähnliche Inhalte

Andere mochten auch

Antiwan Decatur Warehouse(1)
Antiwan Decatur Warehouse(1)Antiwan Decatur Warehouse(1)
Antiwan Decatur Warehouse(1)Antiwan DeCatur
 
громадянське виховання і розвиток творчої особистості
громадянське виховання і розвиток творчої особистостігромадянське виховання і розвиток творчої особистості
громадянське виховання і розвиток творчої особистостіSinyaeva-Oksana
 
Top 5 Applications of Machine 2 Machine Technology | Sysfore
Top 5 Applications of Machine 2 Machine Technology | SysforeTop 5 Applications of Machine 2 Machine Technology | Sysfore
Top 5 Applications of Machine 2 Machine Technology | SysforeSysfore Technologies
 
GDPR Implementation Basics_Igor Mate_2016 CEE GC Summit_Istanbul
GDPR Implementation Basics_Igor Mate_2016 CEE GC Summit_IstanbulGDPR Implementation Basics_Igor Mate_2016 CEE GC Summit_Istanbul
GDPR Implementation Basics_Igor Mate_2016 CEE GC Summit_IstanbulIgor
 
Data Minimization in the age of Big Data | Sysfore
Data Minimization in the age of Big Data | SysforeData Minimization in the age of Big Data | Sysfore
Data Minimization in the age of Big Data | SysforeSysfore Technologies
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPRTim Hyman LLB
 
Презентация проекта «слава армии родной!»
Презентация проекта «слава армии родной!»Презентация проекта «слава армии родной!»
Презентация проекта «слава армии родной!»romisflasher
 

Andere mochten auch (9)

Antiwan Decatur Warehouse(1)
Antiwan Decatur Warehouse(1)Antiwan Decatur Warehouse(1)
Antiwan Decatur Warehouse(1)
 
громадянське виховання і розвиток творчої особистості
громадянське виховання і розвиток творчої особистостігромадянське виховання і розвиток творчої особистості
громадянське виховання і розвиток творчої особистості
 
sesion 5
sesion 5sesion 5
sesion 5
 
Top 5 Applications of Machine 2 Machine Technology | Sysfore
Top 5 Applications of Machine 2 Machine Technology | SysforeTop 5 Applications of Machine 2 Machine Technology | Sysfore
Top 5 Applications of Machine 2 Machine Technology | Sysfore
 
GDPR Implementation Basics_Igor Mate_2016 CEE GC Summit_Istanbul
GDPR Implementation Basics_Igor Mate_2016 CEE GC Summit_IstanbulGDPR Implementation Basics_Igor Mate_2016 CEE GC Summit_Istanbul
GDPR Implementation Basics_Igor Mate_2016 CEE GC Summit_Istanbul
 
Data Minimization in the age of Big Data | Sysfore
Data Minimization in the age of Big Data | SysforeData Minimization in the age of Big Data | Sysfore
Data Minimization in the age of Big Data | Sysfore
 
Bigger, Better Business With OAuth
Bigger, Better Business With OAuthBigger, Better Business With OAuth
Bigger, Better Business With OAuth
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPR
 
Презентация проекта «слава армии родной!»
Презентация проекта «слава армии родной!»Презентация проекта «слава армии родной!»
Презентация проекта «слава армии родной!»
 

Kürzlich hochgeladen

ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesrafiqahmad00786416
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Jeffrey Haguewood
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Zilliz
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxRustici Software
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...apidays
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDropbox
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingEdi Saputra
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...apidays
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...apidays
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdfSandro Moreira
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...Zilliz
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024The Digital Insurer
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxRemote DBA Services
 

Kürzlich hochgeladen (20)

ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptx
 

Gearing up for GDPR in the Cloud

  • 1. Gearing Up for EU GDPR Compliance in the Cloud 1
  • 2. Presenters 2 Jennifer Sand VP of Product Management, CloudLock Russell Miller Director of Product Marketing, CloudLock Andrew Dyson Partner, DLA Piper
  • 3. Continuing Professional Education (CPE) Credits Claim your CPE credit for attending this webinar https://www.isc2.org/ For more information or questions please contact us info@cloudlock.com 3
  • 4. Agenda 01 02 03 04 What is happening when What do you need to know? What do you need to do today? What do you need to do in the next 2 years? 4 05 Questions
  • 6. EU GDPR vs. Privacy Shield 666
  • 7. 777 8 New Provisions 1 No ambiguity. One law across all 28 countries of the EU. 2 The law is global. 3 Increased fines. Up to 4% of global turnover or €20,000,000. 4 Breach notification. Mandatory within 72 hours. 5 New individual rights. 6 Liability extended to data processors as well as data controllers. 7 Information governance through the supply chain. 8 Privacy by design.
  • 8. 888 Who This Applies To European offices Hold data on EU residents
  • 9. Every Company Uses Cloud Services 999
  • 10. 1010 What You Need to Know Where What How
  • 11. 1111 What is Required Appropriate Security Measures Restrict Onward Transfers Access/Manipulate Data
  • 12. Sensitive Data is Out There 12 ** CloudLock Cybersecurity Report: The Extended Parameter
  • 13. A New Operating Paradigm 1313 Internal governance Transparency Customer controls Incident management Audit Data protection officer Disclosure of supply chain/transfer terms Minimise level of data processed Routine risk assessments/audits Formal breach management processes Internal training/ audit & review Internal register of processing Regulate who and how processed Manage Offshore data transfers Appropriate security measures EC Approved “Model Clauses” EC approved Country
  • 14. 141414 Appropriate Security Measures in The Cloud Automatic Detection of Personal Data Automated Action Employee Involvement
  • 15. Cloud Vendor Readiness Questions Add bit.ly 151515 Dedicated Security Team? Systems subjected to penetration testing? Terms for ownership of data? Share most recent vulnerability scan results? Formal procedure for reporting a suspected security violation? Access security of data facilities? http://bit.ly/cloud-questions What is security policy?
  • 16. 161616 What You Need to Do - Today Tomorrow’s Task: 5 MAY 1 Document where and who process data 2 Audit and Prioritize Cloud Vendors 3 Consider technology at hand
  • 18. Do you comply? bit.ly/cloudlock-assessment Come See Us At: 7-9 June Olympia, London Booth D202
  • 19. Thank You Questions & Answers www.cloudlock.com info@cloudlock.com 781.996.4332 21