EU calls on firms, governments to speed up privacy law preparation

Image
Reuters BRUSSELS
Last Updated : Jan 24 2018 | 11:55 PM IST

By Julia Fioretti and Samantha Koester

BRUSSELS (Reuters) - Businesses, regulators and governments have just over 100 days to get ready for the biggest shake-up of personal data privacy rules since the birth of the internet, the European Union executive said on Wednesday, in a reminder of how much work still needs to be done.

Agreed over two years ago, the General Data Protection Regulation (GDPR) enters into force on May 25 and gives members of the public more control over how their data is used as well as requiring businesses to report data breaches within 72 hours.

It drastically increases the penalties for non-compliance, which can go as far as 4 percent of global annual turnover or 20 million euros ($25 million), whichever is higher.

"We need modern rules to respond to new risks, so we call on EU governments, authorities and businesses to use the remaining time efficiently and fulfil their roles in the preparations for the big day," said Vera Jourova, EU Justice Commissioner.

The European Commission released guidance for governments, businesses and regulators to prepare for the new law and noted that only two member states had adopted the relevant national legislation.

It noted that while large companies "are actively preparing for the application of the new rules, many SMEs (small- and medium-sized businesses) are not yet fully aware of the forthcoming data protection rules."

Facebook's Chief Operating Officer Sheryl Sandberg said on Tuesday that the social media giant would make it easier for users to manage their data by bringing all the core privacy settings into one place.

"Some companies still haven't really understood the amount of changes that are required because of GDPR or they still think it doesn't really apply to them," said Monika Kuschewsky, a partner at law firm Squire Patton Boggs.

"That's especially a problem with non-EU headquartered companies that are not in the consumer-facing data business. They are underestimating the sea change that GDPR brings about."

The GDPR will apply to any company offering services in the EU, regardless of where it is headquartered.

($1 = 0.8074 euros)

(Reporting by Julia Fioretti; Editing by Hugh Lawson)

Disclaimer: No Business Standard Journalist was involved in creation of this content

*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

First Published: Jan 24 2018 | 11:40 PM IST

Next Story