My Account Log in

1 option

EU General Data Protection Regulation (GDPR) : an implementation and compliance guide / IT Governance Privacy Team.

O'Reilly Online Learning: Academic/Public Library Edition Available online

View online
Format:
Book
Author/Creator:
ITGP Privacy Team, author.
IT Governance (Organization). Privacy Team. eng
Language:
English
Subjects (All):
Data protection--Law and legislation--European Union countries.
Data protection.
Privacy, Right of--European Union countries.
Privacy, Right of.
Physical Description:
1 online resource (381 p.)
Edition:
2nd ed
Other Title:
European Union General data protection regulation (GDPR)
Place of Publication:
Ely : IT Governance Publishing, 2017.
System Details:
text file
Summary:
The updated second edition of the bestselling guide to the changes your organisation needs to make to comply with the EU GDPR. "The clear language of the guide and the extensive explanations, help to explain the many doubts that arise reading the articles of the Regulation." Giuseppe G. Zorzino The EU General Data Protection Regulation (GDPR) will supersede the 1995 EU Data Protection Directive (DPD) and all EU member states' national laws based on it - including the UK Data Protection Act 1998 - in May 2018. All organisations - wherever they are in the world - that process the personal data of EU residents must comply with the Regulation. Failure to do so could result in fines of up to e20 million or 4% of annual global turnover. This book provides a detailed commentary on the GDPR, explains the changes you need to make to your data protection and information security regimes, and tells you exactly what you need to do to avoid severe financial penalties. Product overview Now in its second edition, EU GDPR - An Implementation and Compliance Guide is a clear and comprehensive guide to this new data protection law, explaining the Regulation, and setting out the obligations of data processors and controllers in terms you can understand. Topics covered include: The role of the data protection officer (DPO) - including whether you need one and what they should do. Risk management and data protection impact assessments (DPIAs), including how, when and why to conduct a DPIA. Data subjects' rights, including consent and the withdrawal of consent; subject access requests and how to handle them; and data controllers' and processors' obligations. International data transfers to "third countries" - including guidance on adequacy decisions and appropriate safeguards; the EU-US Privacy Shield; international organisations; limited transfers; and Cloud providers. How to adjust your data protection processes to transition to GDPR compliance, and the best way of demonstrating that compliance. A full index of the Regulation to help you find the articles and stipulations relevant to your organisation. New for the second edition: Additional definitions. Further guidance on the role of the DPO. Greater clarification on data subjects' rights. Extra guidance on data protection impact assessments. More detailed information on subject access requests (SARs). Clarification of consent and the alternative lawful bases for processing personal data. New appendix: implementation FAQ. The GDPR will have a significant impact on organisational data protection regimes around the world. EU GDPR - An Implementation and Compliance Guide shows you exactly what you need to do to comply with the new law. About the authors IT Governance is a leading global provider of IT governance, risk management and compliance expertise, and we pride ourselves on our ability to deliver a broad range of integrated, high-quality solutions that meet the real-world needs of our international client base. Our privacy team, led by Alan Calder, has substantial experience in privacy, data protection, compliance and information security. This practical experience, our understanding of the background and drivers for the GDPR, and the input of our fast-growing team of consultants and trainers are combined in this manual to provide the world's first guide to implementing the new data protection regulation.
Contents:
Privacy compliance frameworks
Role of the data protection officer
Common data security failures
Six data protection principles
Requirements for data protection impact assessments
Risk management and DPIAs
Data mapping
Conducting DPIAs
Data subjects' rights
Consent
Subject access requests
Controllers and processors
Managing personal data internationally
Incident response management and reporting
GDPR enforcement
Transitioning and demonstrating compliance.
Notes:
Includes index.
Description based on online resource; title from PDF title page (ebrary, viewed October 23, 2017).
Includes bibliographical references.
ISBN:
9781849289467
1849289468
OCLC:
1008595941

The Penn Libraries is committed to describing library materials using current, accurate, and responsible language. If you discover outdated or inaccurate language, please fill out this feedback form to report it and suggest alternative language.

Find

Home Release notes

My Account

Shelf Request an item Bookmarks Fines and fees Settings

Guides

Using the Find catalog Using Articles+ Using your account