SlideShare ist ein Scribd-Unternehmen logo
1 von 16
Uniting Expertise,
Accelerating Ambitions
Uniting Expertise, Accelerating Ambitions
Big Data, Minute Privacy
BA4ALL Big Data & Analytics Insight 2016
Ester Verbylen – CC Legal Manager
Guy Van der Sande – CC BI Manager
USG Professionals
Main countries of operation:
Benelux, France, Germany
90.000 flex workers
at work every day
>40 years of experience
2.3 billion Eur
N°2 in the Netherlands and Belgium
What data do we share ?
Why do we share data ?
91,4% is concerned about online
privacy
47% of iOS apps shares geo-coordinates
with third parties
Customer analytics
Uber’s rides of glory
VTech hack
Presence Analytics @ Bobbejaanland
Legislation?
• Current legislation goes back to the ‘90’s
– Implemented differently in the Member States
– New technologies
• Need for new legislation
– Discussions started in 2011
– General Data Protection Regulation (GDPR)
adopted in April 2016
– Will apply as from 25 May 2018
GDPR: what is new?
– Enforced rights of the data subject, e.g.:
• “the right to be forgotten”
• “right to data portability”
– Obligation to maintain a record of processing activities
• Exceptions e.g. enterprise < 250 persons
– Appointment of a data protection officer (DPO) in some cases
– Notification of data breaches
– Obligations for data processors (and not only for controllers)
– …
GDPR: why should I care?
• As from 25 May 2018:
– Data protection cases dealt with by a data protection authority
or a court
– One-stop shop for individuals and business
– Fines!
20 million OR 4% of global annual turnover
GDPR: What should I do before
25 May 2018?
• Gap analysis, e.g:
– Audit of the data currently being processed
– Do I have a clear overview of all data processing activities
performed by my business?
– Is a data protection impact assessment (DPIA) necessary?
– Do I need to appoint a DPO?
– Are there data subjects request response procedures in place?
– Do I have a data breach response plan (e.g. central breach
management unit)?
• Make staff aware and set up trainings
USG Data Protection Framework
We un-complicate your business by applying our USG DPF
USG DPF = Guidance of specialists, working according by a specific
set of guidelines, to assure compliancy to the European GDPR
• Perform the necessary GAP analysis
• Define the desired level of compliancy
• Setup a plan of action to implement the necessary actions to
get to this desired level
• Follow-up to ensure you remain compliant
References
• Text of the GDPR:
http://eur-lex.europa.eu/legal-
content/EN/TXT/?qid=1462353523271&uri=CELEX:32016R0679
• More information about the GDPR:
http://www.consilium.europa.eu/en/policies/data-protection-reform/
Guy Van der Sande
CC BI Manager
Guy.VanderSande@ext.usgprofessionals.be
@BICC_at_USG
Ester Verbylen
CC Legal Manager
Ester.Verbylen@usgprofessionals.be
Contactgegevens

Weitere ähnliche Inhalte

Was ist angesagt?

Datum DPO outsourced May 2016
Datum DPO outsourced May 2016Datum DPO outsourced May 2016
Datum DPO outsourced May 2016Mark Honeyball
 
GDPR: More reasons for information security
GDPR: More reasons for information securityGDPR: More reasons for information security
GDPR: More reasons for information securityJisc
 
'Connected healthcare - connected to legality?'
'Connected healthcare - connected to legality?''Connected healthcare - connected to legality?'
'Connected healthcare - connected to legality?'Lucy Woods
 
GDPR in practice
GDPR in practiceGDPR in practice
GDPR in practiceZoneFox
 
Supporting Open Data Publishers
Supporting Open Data PublishersSupporting Open Data Publishers
Supporting Open Data PublishersDerilinx
 
Complying with the EC Open Data Directive
Complying with the EC Open Data DirectiveComplying with the EC Open Data Directive
Complying with the EC Open Data DirectiveDerilinx
 
Legal issues on social media
Legal issues on social mediaLegal issues on social media
Legal issues on social mediaGiulio Coraggio
 
The Future of the Modern Workplace Event 2019 - Data Security and Protection
The Future of the Modern Workplace Event 2019 - Data Security and ProtectionThe Future of the Modern Workplace Event 2019 - Data Security and Protection
The Future of the Modern Workplace Event 2019 - Data Security and ProtectionAtlas_Cloud
 
EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer IT Governance Ltd
 
Marketing under the GDPR: What You Can and Cannot Do [Webinar Slides]
Marketing under the GDPR: What You Can and Cannot Do [Webinar Slides]Marketing under the GDPR: What You Can and Cannot Do [Webinar Slides]
Marketing under the GDPR: What You Can and Cannot Do [Webinar Slides]TrustArc
 
Project Management and GDPR - PM-Workshops.com
Project Management and GDPR - PM-Workshops.comProject Management and GDPR - PM-Workshops.com
Project Management and GDPR - PM-Workshops.comMike Doherty, PMP
 
10 Good Reasons: NetApp for GDPR
10 Good Reasons: NetApp for GDPR10 Good Reasons: NetApp for GDPR
10 Good Reasons: NetApp for GDPRNetApp
 
Revising policies and procedures under the new EU GDPR
Revising policies and procedures under the new EU GDPRRevising policies and procedures under the new EU GDPR
Revising policies and procedures under the new EU GDPRIT Governance Ltd
 
ESET Quick Guide to the EU General Data Protection Regulation
ESET Quick Guide to the EU General Data Protection RegulationESET Quick Guide to the EU General Data Protection Regulation
ESET Quick Guide to the EU General Data Protection RegulationESET
 
Are you preparing for GDPR?
Are you preparing for GDPR?Are you preparing for GDPR?
Are you preparing for GDPR?Chris Bullock
 
A Pratical Guide to GDPR - F.Coin
A Pratical Guide to GDPR - F.CoinA Pratical Guide to GDPR - F.Coin
A Pratical Guide to GDPR - F.CoinFranco Coin
 
Data protection in smart cities application of the EU GDPR
Data protection in smart cities application of the EU GDPRData protection in smart cities application of the EU GDPR
Data protection in smart cities application of the EU GDPRMaria Stefanouli
 
Privacy and the GDPR: How Cloud computing could be your failing
Privacy and the GDPR: How Cloud computing could be your failingPrivacy and the GDPR: How Cloud computing could be your failing
Privacy and the GDPR: How Cloud computing could be your failingIT Governance Ltd
 

Was ist angesagt? (20)

Datum DPO outsourced May 2016
Datum DPO outsourced May 2016Datum DPO outsourced May 2016
Datum DPO outsourced May 2016
 
SAP Business One
SAP Business OneSAP Business One
SAP Business One
 
GDPR: More reasons for information security
GDPR: More reasons for information securityGDPR: More reasons for information security
GDPR: More reasons for information security
 
'Connected healthcare - connected to legality?'
'Connected healthcare - connected to legality?''Connected healthcare - connected to legality?'
'Connected healthcare - connected to legality?'
 
GDPR in practice
GDPR in practiceGDPR in practice
GDPR in practice
 
Supporting Open Data Publishers
Supporting Open Data PublishersSupporting Open Data Publishers
Supporting Open Data Publishers
 
Complying with the EC Open Data Directive
Complying with the EC Open Data DirectiveComplying with the EC Open Data Directive
Complying with the EC Open Data Directive
 
Legal issues on social media
Legal issues on social mediaLegal issues on social media
Legal issues on social media
 
The Future of the Modern Workplace Event 2019 - Data Security and Protection
The Future of the Modern Workplace Event 2019 - Data Security and ProtectionThe Future of the Modern Workplace Event 2019 - Data Security and Protection
The Future of the Modern Workplace Event 2019 - Data Security and Protection
 
EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer
 
Marketing under the GDPR: What You Can and Cannot Do [Webinar Slides]
Marketing under the GDPR: What You Can and Cannot Do [Webinar Slides]Marketing under the GDPR: What You Can and Cannot Do [Webinar Slides]
Marketing under the GDPR: What You Can and Cannot Do [Webinar Slides]
 
Project Management and GDPR - PM-Workshops.com
Project Management and GDPR - PM-Workshops.comProject Management and GDPR - PM-Workshops.com
Project Management and GDPR - PM-Workshops.com
 
10 Good Reasons: NetApp for GDPR
10 Good Reasons: NetApp for GDPR10 Good Reasons: NetApp for GDPR
10 Good Reasons: NetApp for GDPR
 
Revising policies and procedures under the new EU GDPR
Revising policies and procedures under the new EU GDPRRevising policies and procedures under the new EU GDPR
Revising policies and procedures under the new EU GDPR
 
ESET Quick Guide to the EU General Data Protection Regulation
ESET Quick Guide to the EU General Data Protection RegulationESET Quick Guide to the EU General Data Protection Regulation
ESET Quick Guide to the EU General Data Protection Regulation
 
Are you preparing for GDPR?
Are you preparing for GDPR?Are you preparing for GDPR?
Are you preparing for GDPR?
 
IT and marketing
IT and marketingIT and marketing
IT and marketing
 
A Pratical Guide to GDPR - F.Coin
A Pratical Guide to GDPR - F.CoinA Pratical Guide to GDPR - F.Coin
A Pratical Guide to GDPR - F.Coin
 
Data protection in smart cities application of the EU GDPR
Data protection in smart cities application of the EU GDPRData protection in smart cities application of the EU GDPR
Data protection in smart cities application of the EU GDPR
 
Privacy and the GDPR: How Cloud computing could be your failing
Privacy and the GDPR: How Cloud computing could be your failingPrivacy and the GDPR: How Cloud computing could be your failing
Privacy and the GDPR: How Cloud computing could be your failing
 

Andere mochten auch

Java 2016- projects list
Java   2016- projects listJava   2016- projects list
Java 2016- projects listNEWZEN INFOTECH
 
ANALYTIC QUERIES OVER GEOSPATIAL TIME-SERIES DATA USING DISTRIBUTED HASH TABLES
ANALYTIC QUERIES OVER GEOSPATIAL TIME-SERIES DATA USING DISTRIBUTED HASH TABLESANALYTIC QUERIES OVER GEOSPATIAL TIME-SERIES DATA USING DISTRIBUTED HASH TABLES
ANALYTIC QUERIES OVER GEOSPATIAL TIME-SERIES DATA USING DISTRIBUTED HASH TABLESNexgen Technology
 
Ahmed_SAMIR_cv[1-1]
Ahmed_SAMIR_cv[1-1]Ahmed_SAMIR_cv[1-1]
Ahmed_SAMIR_cv[1-1]ahmedcmi
 
Edelman Trust Barometer: U.S. Energy Industry
Edelman Trust Barometer: U.S. Energy Industry Edelman Trust Barometer: U.S. Energy Industry
Edelman Trust Barometer: U.S. Energy Industry Edelman
 
A parallel patient treatment time prediction algorithm and its applications i...
A parallel patient treatment time prediction algorithm and its applications i...A parallel patient treatment time prediction algorithm and its applications i...
A parallel patient treatment time prediction algorithm and its applications i...redpel dot com
 
Automatically mining facets for queries from their search results
Automatically mining facets for queries from their search resultsAutomatically mining facets for queries from their search results
Automatically mining facets for queries from their search resultsShakas Technologies
 
Cloud centric multi-level authentication as a service for secure public safet...
Cloud centric multi-level authentication as a service for secure public safet...Cloud centric multi-level authentication as a service for secure public safet...
Cloud centric multi-level authentication as a service for secure public safet...ieeepondy
 
ENJ-400 Mejora Contínua al Programa Formación de Derecho Civil
ENJ-400 Mejora Contínua al Programa Formación de Derecho CivilENJ-400 Mejora Contínua al Programa Formación de Derecho Civil
ENJ-400 Mejora Contínua al Programa Formación de Derecho CivilENJ
 
Sociologie de l'alimentation: L'espace social alimentaire : un concept pour é...
Sociologie de l'alimentation: L'espace social alimentaire : un concept pour é...Sociologie de l'alimentation: L'espace social alimentaire : un concept pour é...
Sociologie de l'alimentation: L'espace social alimentaire : un concept pour é...Jean-Pierre Poulain
 
Protection of big data privacy
Protection of big data privacyProtection of big data privacy
Protection of big data privacyredpel dot com
 
ENJ-300 Atribuciones Penales Del Juzgado De Paz
ENJ-300 Atribuciones Penales Del Juzgado De PazENJ-300 Atribuciones Penales Del Juzgado De Paz
ENJ-300 Atribuciones Penales Del Juzgado De PazENJ
 

Andere mochten auch (20)

Ps 2016- projects list
Ps  2016- projects listPs  2016- projects list
Ps 2016- projects list
 
Java 2016- projects list
Java   2016- projects listJava   2016- projects list
Java 2016- projects list
 
ANALYTIC QUERIES OVER GEOSPATIAL TIME-SERIES DATA USING DISTRIBUTED HASH TABLES
ANALYTIC QUERIES OVER GEOSPATIAL TIME-SERIES DATA USING DISTRIBUTED HASH TABLESANALYTIC QUERIES OVER GEOSPATIAL TIME-SERIES DATA USING DISTRIBUTED HASH TABLES
ANALYTIC QUERIES OVER GEOSPATIAL TIME-SERIES DATA USING DISTRIBUTED HASH TABLES
 
Applic group michel tassen
Applic group michel tassenApplic group michel tassen
Applic group michel tassen
 
Rapidminer: Important Elements
Rapidminer: Important ElementsRapidminer: Important Elements
Rapidminer: Important Elements
 
Ahmed_SAMIR_cv[1-1]
Ahmed_SAMIR_cv[1-1]Ahmed_SAMIR_cv[1-1]
Ahmed_SAMIR_cv[1-1]
 
Edelman Trust Barometer: U.S. Energy Industry
Edelman Trust Barometer: U.S. Energy Industry Edelman Trust Barometer: U.S. Energy Industry
Edelman Trust Barometer: U.S. Energy Industry
 
Dm gillio
Dm gillioDm gillio
Dm gillio
 
Intracto
IntractoIntracto
Intracto
 
A parallel patient treatment time prediction algorithm and its applications i...
A parallel patient treatment time prediction algorithm and its applications i...A parallel patient treatment time prediction algorithm and its applications i...
A parallel patient treatment time prediction algorithm and its applications i...
 
Embedded system
Embedded systemEmbedded system
Embedded system
 
Automatically mining facets for queries from their search results
Automatically mining facets for queries from their search resultsAutomatically mining facets for queries from their search results
Automatically mining facets for queries from their search results
 
L'observatoire des millennials
L'observatoire des millennialsL'observatoire des millennials
L'observatoire des millennials
 
Cloud centric multi-level authentication as a service for secure public safet...
Cloud centric multi-level authentication as a service for secure public safet...Cloud centric multi-level authentication as a service for secure public safet...
Cloud centric multi-level authentication as a service for secure public safet...
 
ENJ-400 Mejora Contínua al Programa Formación de Derecho Civil
ENJ-400 Mejora Contínua al Programa Formación de Derecho CivilENJ-400 Mejora Contínua al Programa Formación de Derecho Civil
ENJ-400 Mejora Contínua al Programa Formación de Derecho Civil
 
RAPIDMINER: Rapidminerproducts
RAPIDMINER: RapidminerproductsRAPIDMINER: Rapidminerproducts
RAPIDMINER: Rapidminerproducts
 
Rapid miner
Rapid minerRapid miner
Rapid miner
 
Sociologie de l'alimentation: L'espace social alimentaire : un concept pour é...
Sociologie de l'alimentation: L'espace social alimentaire : un concept pour é...Sociologie de l'alimentation: L'espace social alimentaire : un concept pour é...
Sociologie de l'alimentation: L'espace social alimentaire : un concept pour é...
 
Protection of big data privacy
Protection of big data privacyProtection of big data privacy
Protection of big data privacy
 
ENJ-300 Atribuciones Penales Del Juzgado De Paz
ENJ-300 Atribuciones Penales Del Juzgado De PazENJ-300 Atribuciones Penales Del Juzgado De Paz
ENJ-300 Atribuciones Penales Del Juzgado De Paz
 

Ähnlich wie Big data minute privacy

GDPR & corporate Governance, Evaluation after 2 years implementation
GDPR & corporate Governance, Evaluation after 2 years implementationGDPR & corporate Governance, Evaluation after 2 years implementation
GDPR & corporate Governance, Evaluation after 2 years implementationFERMA
 
The GDPR and its requirements for implementing data protection impact assessm...
The GDPR and its requirements for implementing data protection impact assessm...The GDPR and its requirements for implementing data protection impact assessm...
The GDPR and its requirements for implementing data protection impact assessm...IT Governance Ltd
 
The first steps towards GDPR compliance 
The first steps towards GDPR compliance The first steps towards GDPR compliance 
The first steps towards GDPR compliance IT Governance Ltd
 
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...CIO Edge
 
GDPR will be the new regulation on may 2018
GDPR will be the new regulation on may 2018GDPR will be the new regulation on may 2018
GDPR will be the new regulation on may 2018Marjane Moghimi, ERP
 
Jowanna Conboye - Stephens Scown
Jowanna Conboye - Stephens ScownJowanna Conboye - Stephens Scown
Jowanna Conboye - Stephens ScownAgile PR
 
Big Data LDN 2017: Applied AI for GDPR
Big Data LDN 2017: Applied AI for GDPRBig Data LDN 2017: Applied AI for GDPR
Big Data LDN 2017: Applied AI for GDPRMatt Stubbs
 
EU GDPR: What You Really Need to Know
EU GDPR: What You Really Need to Know EU GDPR: What You Really Need to Know
EU GDPR: What You Really Need to Know Sarah Crabb
 
EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)RAKESH S
 
TrustArc Webinar-Advertising, Privacy, and Data Management Working Together
TrustArc Webinar-Advertising, Privacy, and Data Management Working TogetherTrustArc Webinar-Advertising, Privacy, and Data Management Working Together
TrustArc Webinar-Advertising, Privacy, and Data Management Working TogetherTrustArc
 
Privacy Regulations and Your Digital Setup
Privacy Regulations and Your Digital SetupPrivacy Regulations and Your Digital Setup
Privacy Regulations and Your Digital SetupPiwik PRO
 
How Insurers Fueled Transformation During a Pandemic
How Insurers Fueled Transformation During a PandemicHow Insurers Fueled Transformation During a Pandemic
How Insurers Fueled Transformation During a PandemicNuxeo
 
General Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readinessGeneral Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readinessOmo Osagiede
 
IAB Europe's GDPR Compliance Primer
IAB Europe's GDPR Compliance PrimerIAB Europe's GDPR Compliance Primer
IAB Europe's GDPR Compliance PrimerIAB Europe
 
Using GDPR to Transform Customer Experience
Using GDPR to Transform Customer ExperienceUsing GDPR to Transform Customer Experience
Using GDPR to Transform Customer ExperienceMongoDB
 
General Data Protection Regulation (GDPR) Implications for Canadian Firms
General Data Protection Regulation (GDPR) Implications for Canadian FirmsGeneral Data Protection Regulation (GDPR) Implications for Canadian Firms
General Data Protection Regulation (GDPR) Implications for Canadian Firmsaccenture
 
GDPR training
GDPR training GDPR training
GDPR training ASL
 

Ähnlich wie Big data minute privacy (20)

GDPR & corporate Governance, Evaluation after 2 years implementation
GDPR & corporate Governance, Evaluation after 2 years implementationGDPR & corporate Governance, Evaluation after 2 years implementation
GDPR & corporate Governance, Evaluation after 2 years implementation
 
The GDPR and its requirements for implementing data protection impact assessm...
The GDPR and its requirements for implementing data protection impact assessm...The GDPR and its requirements for implementing data protection impact assessm...
The GDPR and its requirements for implementing data protection impact assessm...
 
The first steps towards GDPR compliance 
The first steps towards GDPR compliance The first steps towards GDPR compliance 
The first steps towards GDPR compliance 
 
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
 
GDPR will be the new regulation on may 2018
GDPR will be the new regulation on may 2018GDPR will be the new regulation on may 2018
GDPR will be the new regulation on may 2018
 
Jowanna Conboye - Stephens Scown
Jowanna Conboye - Stephens ScownJowanna Conboye - Stephens Scown
Jowanna Conboye - Stephens Scown
 
Big Data LDN 2017: Applied AI for GDPR
Big Data LDN 2017: Applied AI for GDPRBig Data LDN 2017: Applied AI for GDPR
Big Data LDN 2017: Applied AI for GDPR
 
EU GDPR: What You Really Need to Know
EU GDPR: What You Really Need to Know EU GDPR: What You Really Need to Know
EU GDPR: What You Really Need to Know
 
EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)
 
2016 11-17-gdpr-integro-webinar
2016 11-17-gdpr-integro-webinar2016 11-17-gdpr-integro-webinar
2016 11-17-gdpr-integro-webinar
 
TrustArc Webinar-Advertising, Privacy, and Data Management Working Together
TrustArc Webinar-Advertising, Privacy, and Data Management Working TogetherTrustArc Webinar-Advertising, Privacy, and Data Management Working Together
TrustArc Webinar-Advertising, Privacy, and Data Management Working Together
 
Privacy Regulations and Your Digital Setup
Privacy Regulations and Your Digital SetupPrivacy Regulations and Your Digital Setup
Privacy Regulations and Your Digital Setup
 
How Insurers Fueled Transformation During a Pandemic
How Insurers Fueled Transformation During a PandemicHow Insurers Fueled Transformation During a Pandemic
How Insurers Fueled Transformation During a Pandemic
 
General Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readinessGeneral Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readiness
 
IAB Europe's GDPR Compliance Primer
IAB Europe's GDPR Compliance PrimerIAB Europe's GDPR Compliance Primer
IAB Europe's GDPR Compliance Primer
 
GDPR for dummies
GDPR for dummies  GDPR for dummies
GDPR for dummies
 
Using GDPR to Transform Customer Experience
Using GDPR to Transform Customer ExperienceUsing GDPR to Transform Customer Experience
Using GDPR to Transform Customer Experience
 
General Data Protection Regulation (GDPR) Implications for Canadian Firms
General Data Protection Regulation (GDPR) Implications for Canadian FirmsGeneral Data Protection Regulation (GDPR) Implications for Canadian Firms
General Data Protection Regulation (GDPR) Implications for Canadian Firms
 
BDVe Webinar Series - Making GDPR for SMEs
BDVe Webinar Series - Making GDPR for SMEsBDVe Webinar Series - Making GDPR for SMEs
BDVe Webinar Series - Making GDPR for SMEs
 
GDPR training
GDPR training GDPR training
GDPR training
 

Kürzlich hochgeladen

Relationship Between International Law and Municipal Law MIR.pdf
Relationship Between International Law and Municipal Law MIR.pdfRelationship Between International Law and Municipal Law MIR.pdf
Relationship Between International Law and Municipal Law MIR.pdfKelechi48
 
Appeal and Revision in Income Tax Act.pdf
Appeal and Revision in Income Tax Act.pdfAppeal and Revision in Income Tax Act.pdf
Appeal and Revision in Income Tax Act.pdfPoojaGadiya1
 
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptxMunicipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptxSHIVAMGUPTA671167
 
THE FACTORIES ACT,1948 (2).pptx labour
THE FACTORIES ACT,1948 (2).pptx   labourTHE FACTORIES ACT,1948 (2).pptx   labour
THE FACTORIES ACT,1948 (2).pptx labourBhavikaGholap1
 
Andrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top Boutique
Andrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top BoutiqueAndrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top Boutique
Andrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top BoutiqueSkyLaw Professional Corporation
 
6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
6th sem cpc notes for 6th semester students samjhe. Padhlo bhai6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
6th sem cpc notes for 6th semester students samjhe. Padhlo bhaiShashankKumar441258
 
How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...
How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...
How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...Finlaw Associates
 
Transferable and Non-Transferable Property.pptx
Transferable and Non-Transferable Property.pptxTransferable and Non-Transferable Property.pptx
Transferable and Non-Transferable Property.pptx2020000445musaib
 
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptx
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptxIBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptx
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptxRRR Chambers
 
8. SECURITY GUARD CREED, CODE OF CONDUCT, COPE.pptx
8. SECURITY GUARD CREED, CODE OF CONDUCT, COPE.pptx8. SECURITY GUARD CREED, CODE OF CONDUCT, COPE.pptx
8. SECURITY GUARD CREED, CODE OF CONDUCT, COPE.pptxPamelaAbegailMonsant2
 
Chp 1- Contract and its kinds-business law .ppt
Chp 1- Contract and its kinds-business law .pptChp 1- Contract and its kinds-business law .ppt
Chp 1- Contract and its kinds-business law .pptzainabbkhaleeq123
 
一比一原版旧金山州立大学毕业证学位证书
 一比一原版旧金山州立大学毕业证学位证书 一比一原版旧金山州立大学毕业证学位证书
一比一原版旧金山州立大学毕业证学位证书SS A
 
PowerPoint - Legal Citation Form 1 - Case Law.pptx
PowerPoint - Legal Citation Form 1 - Case Law.pptxPowerPoint - Legal Citation Form 1 - Case Law.pptx
PowerPoint - Legal Citation Form 1 - Case Law.pptxca2or2tx
 
589308994-interpretation-of-statutes-notes-law-college.pdf
589308994-interpretation-of-statutes-notes-law-college.pdf589308994-interpretation-of-statutes-notes-law-college.pdf
589308994-interpretation-of-statutes-notes-law-college.pdfSUSHMITAPOTHAL
 
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881mayurchatre90
 
一比一原版牛津布鲁克斯大学毕业证学位证书
一比一原版牛津布鲁克斯大学毕业证学位证书一比一原版牛津布鲁克斯大学毕业证学位证书
一比一原版牛津布鲁克斯大学毕业证学位证书E LSS
 
WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)
WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)
WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)Delhi Call girls
 

Kürzlich hochgeladen (20)

Relationship Between International Law and Municipal Law MIR.pdf
Relationship Between International Law and Municipal Law MIR.pdfRelationship Between International Law and Municipal Law MIR.pdf
Relationship Between International Law and Municipal Law MIR.pdf
 
Appeal and Revision in Income Tax Act.pdf
Appeal and Revision in Income Tax Act.pdfAppeal and Revision in Income Tax Act.pdf
Appeal and Revision in Income Tax Act.pdf
 
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptxMunicipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
 
Rohini Sector 25 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
Rohini Sector 25 Call Girls Delhi 9999965857 @Sabina Saikh No AdvanceRohini Sector 25 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
Rohini Sector 25 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
 
THE FACTORIES ACT,1948 (2).pptx labour
THE FACTORIES ACT,1948 (2).pptx   labourTHE FACTORIES ACT,1948 (2).pptx   labour
THE FACTORIES ACT,1948 (2).pptx labour
 
Andrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top Boutique
Andrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top BoutiqueAndrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top Boutique
Andrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top Boutique
 
6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
6th sem cpc notes for 6th semester students samjhe. Padhlo bhai6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
 
How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...
How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...
How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...
 
Transferable and Non-Transferable Property.pptx
Transferable and Non-Transferable Property.pptxTransferable and Non-Transferable Property.pptx
Transferable and Non-Transferable Property.pptx
 
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptx
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptxIBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptx
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptx
 
8. SECURITY GUARD CREED, CODE OF CONDUCT, COPE.pptx
8. SECURITY GUARD CREED, CODE OF CONDUCT, COPE.pptx8. SECURITY GUARD CREED, CODE OF CONDUCT, COPE.pptx
8. SECURITY GUARD CREED, CODE OF CONDUCT, COPE.pptx
 
Chp 1- Contract and its kinds-business law .ppt
Chp 1- Contract and its kinds-business law .pptChp 1- Contract and its kinds-business law .ppt
Chp 1- Contract and its kinds-business law .ppt
 
一比一原版旧金山州立大学毕业证学位证书
 一比一原版旧金山州立大学毕业证学位证书 一比一原版旧金山州立大学毕业证学位证书
一比一原版旧金山州立大学毕业证学位证书
 
PowerPoint - Legal Citation Form 1 - Case Law.pptx
PowerPoint - Legal Citation Form 1 - Case Law.pptxPowerPoint - Legal Citation Form 1 - Case Law.pptx
PowerPoint - Legal Citation Form 1 - Case Law.pptx
 
589308994-interpretation-of-statutes-notes-law-college.pdf
589308994-interpretation-of-statutes-notes-law-college.pdf589308994-interpretation-of-statutes-notes-law-college.pdf
589308994-interpretation-of-statutes-notes-law-college.pdf
 
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881
 
一比一原版牛津布鲁克斯大学毕业证学位证书
一比一原版牛津布鲁克斯大学毕业证学位证书一比一原版牛津布鲁克斯大学毕业证学位证书
一比一原版牛津布鲁克斯大学毕业证学位证书
 
WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)
WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)
WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)
 
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
 
Russian Call Girls Rohini Sector 7 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...
Russian Call Girls Rohini Sector 7 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...Russian Call Girls Rohini Sector 7 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...
Russian Call Girls Rohini Sector 7 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...
 

Big data minute privacy

  • 1. Uniting Expertise, Accelerating Ambitions Uniting Expertise, Accelerating Ambitions Big Data, Minute Privacy BA4ALL Big Data & Analytics Insight 2016 Ester Verbylen – CC Legal Manager Guy Van der Sande – CC BI Manager
  • 2. USG Professionals Main countries of operation: Benelux, France, Germany 90.000 flex workers at work every day >40 years of experience 2.3 billion Eur N°2 in the Netherlands and Belgium
  • 3.
  • 4. What data do we share ?
  • 5. Why do we share data ? 91,4% is concerned about online privacy 47% of iOS apps shares geo-coordinates with third parties
  • 6.
  • 10. Presence Analytics @ Bobbejaanland
  • 11. Legislation? • Current legislation goes back to the ‘90’s – Implemented differently in the Member States – New technologies • Need for new legislation – Discussions started in 2011 – General Data Protection Regulation (GDPR) adopted in April 2016 – Will apply as from 25 May 2018
  • 12. GDPR: what is new? – Enforced rights of the data subject, e.g.: • “the right to be forgotten” • “right to data portability” – Obligation to maintain a record of processing activities • Exceptions e.g. enterprise < 250 persons – Appointment of a data protection officer (DPO) in some cases – Notification of data breaches – Obligations for data processors (and not only for controllers) – …
  • 13. GDPR: why should I care? • As from 25 May 2018: – Data protection cases dealt with by a data protection authority or a court – One-stop shop for individuals and business – Fines! 20 million OR 4% of global annual turnover
  • 14. GDPR: What should I do before 25 May 2018? • Gap analysis, e.g: – Audit of the data currently being processed – Do I have a clear overview of all data processing activities performed by my business? – Is a data protection impact assessment (DPIA) necessary? – Do I need to appoint a DPO? – Are there data subjects request response procedures in place? – Do I have a data breach response plan (e.g. central breach management unit)? • Make staff aware and set up trainings
  • 15. USG Data Protection Framework We un-complicate your business by applying our USG DPF USG DPF = Guidance of specialists, working according by a specific set of guidelines, to assure compliancy to the European GDPR • Perform the necessary GAP analysis • Define the desired level of compliancy • Setup a plan of action to implement the necessary actions to get to this desired level • Follow-up to ensure you remain compliant
  • 16. References • Text of the GDPR: http://eur-lex.europa.eu/legal- content/EN/TXT/?qid=1462353523271&uri=CELEX:32016R0679 • More information about the GDPR: http://www.consilium.europa.eu/en/policies/data-protection-reform/ Guy Van der Sande CC BI Manager Guy.VanderSande@ext.usgprofessionals.be @BICC_at_USG Ester Verbylen CC Legal Manager Ester.Verbylen@usgprofessionals.be Contactgegevens

Hinweis der Redaktion

  1. Laat deze slide onveranderd !
  2. Deze slide wordt nog aangeleverd door BQ.
  3. Video uploaded in 2006
  4. Deliberately Unknowingly
  5. 91,4% concerned about online privacy https://www.behavioraleconomics.com/5-reasons-why-we-compromise-our-privacy-online/ 36% Google.com 18% Googleapis.com 17% apple.com 14% facebook http://techscience.org/a/2015103001/
  6. http://www.forbes.com/sites#/sites/kashmirhill/2012/02/16/how-target-figured-out-a-teen-girl-was-pregnant-before-her-father-did/ As Pole’s computers crawled through the data, he was able to identify about 25 products that, when analyzed together, allowed him to assign each shopper a “pregnancy prediction” score. More important, he could also estimate her due date to within a small window, so Target could send coupons timed to very specific stages of her pregnancy. Then we started mixing in all these ads for things we knew pregnant women would never buy, so the baby ads looked random. We’d put an ad for a lawn mower next to diapers. We’d put a coupon for wineglasses next to infant clothes. That way, it looked like all the products were chosen by chance. pretend like you know less than you do so as not to creep the person out.
  7. http://www.oregonlive.com/today/index.ssf/2014/11/sex_the_single_girl_and_ubers.html 2012 https://gigaom.com/2012/03/26/uber-one-night-stands/ I say it’s not too scientific because Uber’s study is based on a hypothesis that it has all but deemed true from the get-go: “[A]nyone who took a ride between 10pm and 4am on a Friday or Saturday night, and then took a second ride from within 1/10th of a mile of the previous nights’ drop-off point 4-6 hours later (enough for a quick night’s sleep) [has engaged in a one-night stand].” But then Uber goes on to prove its hypothesis right, kind of. Peek on birthday, taxs day Drop on Valentine’s day
  8. http:/ Er is een 21-jarige Britse man aangehouden in het onderzoek naar de grote hack bij Vtech, een ontwikkelaar van computers en online diensten voor kinderen.  Dat meldt de BBC dinsdag. De man wordt ervan verdacht ingebroken te hebben in een computer, aldus de Britse politie.  De politie laat weten dat het onderzoek nog in een vroeg stadium verkeert en dat er nog veel nader onderzoek moet worden verricht.  Eind november werd bekend dat Vtech was getroffen door een omvangrijke hack. Daarbij lekten de gegevens van ruim zes miljoen kinderen en bijna 5 miljoen ouders, waaronder de data van ruim 124.000 Nederlandse kinderen en meer dan 100.000 Nederlandse ouders. Die gegevens zijn, voor zover bekend, niet online gezet.  V-tech liet kort na de hack weten dat de beveiliging van de database te wensen overliet. De exacte omvang van de hack is nog onduidelijk. In ieder geval de namen, geslachten en geboortedata van de kinderen zijn gelekt. Van de ouders zijn ook de adressen, e-mailadressen, versleutelde wachtwoorden en ip-adressen gelekt.  /www.cnbc.com/2015/12/02/vtech-hack-data-of-64m-kids-exposed.html
  9. http://www.smartbiz.be/nieuws/163132/wat-bobbejaanland-weet-dankzij-uw-smartphone/ http://www.vanroey.be/wp-content/uploads/2014/12/Case-Bobbejaanland-Fortinet-Fortipresence.pdf
  10. Directive 95/46/EC = richtlijn, dus elke lidstaat moest deze omzetten in nationale wetgeving (in België heb je de Privacywet van 1992 die werd aangepast aan de richtlijn) Alle lidstaten hebben hun eigen manier van omzetten gehad, waardoor er verschillen per land zijn inzake privacywetgeving Sinds de jaren ‘90 veel veranderd qua technologie (internet, gps, smartphone,…) en wetgeving was hier niet op voorzien Vandaar nieuwe wetgeving op Europees niveau Verordening: onmiddellijk van toepassing in de lidstaten, geen omzetting in nationale wetgeving vereist! Lidstaten moeten tegen 2018 wel nog bepaalde zaken in nationale wetgeving nader bepalen (bv. details over hoe de toezichthoudende autoriteit boetes kan opleggen).
  11. Grounds for asking erasure (right to be forgotten): the data are no longer necessary in relation to the purposes for which they were collected or otherwise processed; the data subject withdraws consent on which the processing is based and where there is no other legal ground for the processing of the data; the data subject objects to the processing of personal data for profiling purposes and there are no overriding legitimate grounds for the processing; the data have been unlawfully processed; the data have to be erased for compliance with a legal obligation in Union or Member State law to which the controller is subject; the data have been collected in relation to the offering of information society services to children. !Er bestaan uitzonderingen op, dus right to be forgotten is niet absoluut. Data Portability : mogelijkheid om de hem betreffende persoonsgegevens die hij aan een verwerkingsverantwoordelijke heeft verstrekt, in een gestructureerd, gangbaar, machineleesbaar en interoperabel formaat te verkrijgen en die aan een andere verwerkingsverantwoordelijke door te zenden. De GDPR voorziet in de verplichting om inbreuken op de verwerking van persoonsgegevens te melden aan de verantwoordelijke autoriteit, in de regel binnen 72u. Indien een hoog risico ivoor de rechten en vrijheden van natuurlijke personen: ook de betrokkene zelf verwittigen! Data processors = verwerkers die in opdracht van de verantwoordelijke voor de verwerking (controllers) werken. Werden tot nu toe enkel via een contract met de verantwoordelijke aansprakelijk gehouden maar niet vanuit de wetgeving.
  12. Vanaf mei 2018 zullen inbreuken op data protection veel efficiënter en effectiever worden aangepakt. Niet alleen de rechtbanken, maar ook de toezichthoudende autoriteiten (in ons land: de privacycommissie) krijgen de mogelijkheid om boetes te geven. leidende toezichthoudende autoriteit: - Aangezien de wetgeving uniform zal zijn in de lidstaten en er een one-stop-shop principe geldt, zal een onderneming maar tov 1 toezichthoudende overheid verantwoording moeten afleggen: = de toezichthoudende autoriteit van de hoofdvestiging van de verwerkingsverantwoordelijke of verwerker of van de ene vestiging van de verwerkingsverantwoordelijke of verwerker One stop shop heeft ook het voordeel voor de business dat ze niet meer in elk land een aangifte voor verwerking van persoonsgegevens moeten doen zoals nu wel het geval is.
  13. Ondernemingen moeten zich nu reeds verschillende vragen stellen om tegen 25 mei 2018 compliant te zijn met de nieuwe verordening. Privacy by design (vanop de tekentafel rekening houden met privacy) Privacy by default: alleen persoonsgegevens gebruiken die nodig zijn voor een welbepaald doeleinde, rekening houdend met Hoeveelheid gegevens Omvang van de verwerking Bewaarduur Toegankelijkheid Niet by default toegankelijk voor iedereen Privacyvriendelijke instellingen USG kan daarbij helpen.
  14. Wij ontzorgen onze klanten van de problematiek en zorgen dat ze complant zullen zijn met de wetgeving Advies, zowel ICT als legal GAP analysis (DP assessment ?) Need for Uitvoeren van Data Protection Impact Assessments Do I need to appoint a DPO Training ? 25 mei 2018