Download as pptx, pdf, or txt
Download as pptx, pdf, or txt
You are on page 1of 7

Privacy and EU GDPR

Ayilur Ramnath
CISA, CGEIT, CRISC, CISM, COBIT 5 Implementer & Certified Assessor, MoR Practitioner, CRM
(ISO31000), TOGAF Certified, ISO27001 LA & LI, ISO20000 Auditor, ITIL Practitioner & Expert
(Capability & Lifecycle Streams), PRINCE2 & PRINCE2 Agile Practitioner, CSOE (SOx), SSGB, OCTAVE
Implementer, CPEGP (GDPR), DCPP (Privacy & Data Protection), Certified Data Protection Officer
(CDPO), GRC Professional (GRCP), NIST Cyber Security F/w Implementer, RESILIA Practitioner, CCSK,
Professional Cloud Security & Service Manager, Cloud Technology Associate, MSP Practitioner,
ISO22301 LA & LI

www.ayilur.com
What is Privacy?
Activities anyone will perform today

Applying for a loan


Visiting an organisation
Providing the ID/Address proof
Uploading pictures
Installing an app on mobile device

Feeling of being left alone!!


What is EU GDPR?
Roles in Privacy

• Data Subject
• Data Controller
• Data Protection Officer
• Data Processor
• Data Protection Officer
• Data Protection Authority
• Third Party

Who will play the role of DPO?


What is EU GDPR?
Rights & Principles

1. The right to be informed 1. Lawfulness, fairness and


2. The right of access transparency
3. The right to rectification 2. Purpose limitations
4. The right to erasure 3. Data minimisation
5. The right to restrict processing 4. Accuracy
6. The right to data portability 5. Storage limitations
7. The right to object 6. Integrity and confidentiality
8. Rights in relation to automated 7. Accountability
decision making and profiling.
What is EU GDPR?
The Myths

Its just another legal requirement


Its about updating the privacy policy
Its to do with IT Department
Its not for us
We’ll comply when we grow big

None of the above or all of the above??


What is EU GDPR?
For whom it is?

The GDPR applies across all the Member States of the EU


but its reach is far wider

Any organisation anywhere in the world that provides services into the EU
that involve processing personal data will have to comply

The GDPR is probably now the most significant data security law in the world.
Thank You!

Contact:

email
Phone no

You might also like