Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Thursday, 4 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Get Ready for GDPR

Resistance is Futile!

by The Gurus
June 17, 2020
in Regulation, Security News
Security Serious virtual webinars
Share on FacebookShare on Twitter

The data protection and security landscape is all set for change next year with the new EU General Data Protection Regulation (“GDPR”).  There will be regulatory burdens, but you can also use GDPR  to bring some focus on what you do and improve your security stance. If you’re serious about security, GDPR can help. Remember…

  • The new rules are part revolution/part evolution – the new system builds on the current one if you already comply with EU privacy laws you can build on those foundations;
  • Don’t panic, plan instead – the full impact will come in 2018 but preparation now will pay off then.

We’ve been working on GDPR projects since the first draft came out in 2012. GDPR is a long document but here’s some highlights:
Security breach reporting
One of the most important changes is that there will be mandatory security breach  reporting (subject to some ifs and buts).
Breaches must usually be reported to a regulator within 72 hours and those affected by the breach must usually also be informed – to do this you must have clear, practical, effective and immediate procedures. You’ll also need to get your vendors and suppliers on board – this is business critical so you can’t afford to get it wrong. Encryption could mean you don’t need to do as much however so this could be the time to get budget to improve your processes.
New rights?
New rights are being introduced and existing ones tweaked, including.

  • A new Right To Data Portability;
  • An extended Right To Be Forgotten (called the Right to Erasure);
  • An enhanced Subject Access Right – to be free and with a shorter time to

SARs could be used like DDOS attacks so make sure you have a process and are ready to respond.
Data Protection Impact Assessments (“DPIAs”)
DPIAs will have to be undertaken for some data processing operations. DPIAs put the compliance assessment burden on those handling personal data – but, used as a wider tool they help you get a better handle on your data processes and reduce risk. This should help you build privacy and  security into the heart of what you do. There’s no set format – the key thing is to pick a process that is simple to understand and helps you get to the real risks quickly.
Greater penalties
Increased enforcement will come about with the new regime, backed up by greater sanctions.
There are fines of up to €20 million or 4% of the global annual revenue of a business (whichever is the greater), with likely higher reputational damage resulting and the possibility of civil actions too. In some cases the new UK legislation can also lead to criminal penalties as well. This is the big stick for data protection compliance, but, getting it right will avoid major headaches.
What you need to do now?
Start preparing now and read our FAQs at www.bit.ly/gdprfaq or watch our film on YouTube at www.bit.ly/gdprfilm. You might also be interested in our GDPR Navigator subscription service which includes films, checklists articles and a monthly call to help plan for GDPR. The details of this service are at www.bit.ly/gdprnav
By Jonathan Armstrong
GDPR will also be part of the discussion in this year’s Security Serious virtual webinars. The full summit line-up includes setting the scene for the skills gap, chaired by Warwick Ashford, security editor of Computer Weekly; incentives that make the UK an ideal cyber security hub, chaired by Sarb Sembhi of Virtually Informed; artificial intelligence, chaired by Pete Warren from Future Intelligence; creative employment, chaired by Vicki Gavin, CISO of the Economist Group and neuro diversity, chaired by Brian Higgins from (ISC)².
You can find more information, including how to register here: https://www.securityserious.com/conference/ .

Tags: CybersecurityTechnology
ShareTweet
Previous Post

Never too early: Synopsys’ BSIMM8 study champions benchmarking in the early stages of Software Security Initiatives

Next Post

New nRansomware demands Nude Pictures, not Bitcoin

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol