Bits N’ Bytes Cybersecurity Education is a 501(c)(3) dedicated to building a human firewall through education on cybersecurity and privacy for all vulnerable populations!
Chart Topping Tech! Cyber Security Home Staying Safe

GDPR explained for ages 9 – 95

Avatar

Hi there! Thanks so much for joining us today for a breakdown of a cybersecurity/privacy concept that has made headlines these past few weeks: GDPR! In the last couple days, you may have received a couple (hopefully a lot!) of emails in your inbox about different companies telling you about their new addition of GDPR policies to their current privacy policies.

Exhibit A! Email notification from Udacity

While you may be tempted to mark them as unread, here’s all you need to know about what is happening and why these laws are oh so important to you and your family:

GDPR Simply Explained

GDPR, or General Data Protection Regulation are new laws passed by the European Commission in April 2016 in Europe that require small and large corporations to protect consumer data through compliance and liability. For the past two years, companies have been working towards becoming compliant to stricter regulations for getting consent for hosting customer PII (Personally Identifiable Information like Social Security, pictures, emails, phone numbers, IP addresses, cookies), preparing for the big May 25th, 2018 date (aka 1 week from today), when the laws go into effect.

Illustration showing key elements of GDPR (effective 25 May 2018) – DPOs, Compliance, Data Breaches and Personal Data

What kind of policies are we talking about?

GDPR tightens up the rules for assuring user consent about storing a user’s email addresses and data that is now frequently sold to data brokers. Simply put, companies have to establish what data they are collecting, what exactly they are doing with the data, how consumers opted into their lists, how long they are collecting it, and how they are collecting the data. This means that companies have to be super explicit to users about their data and with these laws, control is shifted to the user while making the company compliant. One way this is happening is that companies are now required to have an “uncheck” box when asking permission from you when you sign up for the service. GDPR also requires that all previous data from a company has to have been collected abiding to these new rules. In all honesty, there are so many harms that could come with your data being unencrypted and on the Internet. With GDPR, this is the first big step that has privacy advocates screaming (with JOY). This makes for improved transparency, accountability, and readability (yes, it will no longer look like legal gobbledygook!).

Article 3 of the GDPR says that if you collect personal data or behavioral information from someone in an EU country, your company is subject to the requirements of the GDPR. EU laws apply in the EU. For EU citizens outside the EU when the data is collected, the GDPR would not apply. – Forbes

For the full list of specific GDPR articles, read here!

Source: Creative Networks

But the US is not the EU? (Or is it…?)

Nope, you saw it right, I did say Europe! These new laws are being enforced in Europe. However, because of today’s technology and our cloud, making data and the Internet a global arena, there is a global impact on consumers and businesses that host PII. No matter where you are, the GDPR regulations impacts companies everywhere since any company that has a Web presence in Europe has to comply. 

Which companies is this affecting?

Virtually any company that collected any form of PII from European citizens is affected, especially digital marketing companies, email marketers, small businesses, ecommerce companies (Amazon, eBay), and social media companies (Facebook, Twitter, etc.), who have been working to beat the deadline on May 25th. So, basically, the companies that make our world go ’round!

Here are a couple notices from companies you probably use!

  • Twitter GDPR
  • Facebook GDPR
  • Amazon Web Services GDPR
  • Google Cloud GDPR
  • Instagram GDPR

What’s the penalty for a company who doesn’t comply?

In fact, authorities are actually reliant on customers reporting if companies are noncompliant! The fines for being so are pretty hefty, being up to 4% of the company’s annual global revenue or 20 million euros (whichever is greater). 

Source: DLA Piper

Any cons to mention about GDPR?

Endless consent prompts for every data process has said to possibly burden companies and users in the age of user friendliness. Also, GDPR compliance requires a significant investment from companies, since they must appoint a “Data Protection Officer” and not only provide updated audits frequently but also make sure each product takes a “privacy first approach” through design.

 As is often the case with legislation, especially that coming from the European Commission, there is a concern of overregulation when it comes to the GDPR…[and] Software that offers Data Loss Prevention or data classification features should be implemented system-wide for a better insight and control of who is processing data where. All of this, of course, comes at a cost. – Endpoint Protector

What changes users can expect?

As consumers, it’s likely we will see won’t see much change other than an email about changes in privacy policies and pop-ups asking about permissions. However, this is what companies want! Companies have been working at this simplicity because if the pop-up is the only thing you see, it simplifies the complicated process, while informing users about the changes to come. With GDPR, we will have some sort of knowledge of protection of our data.

Moral of the story? Unread those emails, my friend! You’re going to want to know this information. Read more to find out why we’re counting on you! GDPR really brings up to the table the topic about US thinking more abut the data collected and how permission is granted, as well as companies thinking about how they are using and collecting data.

Thanks so much for joining me today! As always, stay empowered and knowledgeable about your security online! By simply reading this blog and staying informed, you are many step closer towards that goal!

Detective Safety

Curious? Here are a couple resources:

Pro/Con of GDPR Compliance

https://www.csoonline.com/article/3202771/data-protection/general-data-protection-regulation-gdpr-requirements-deadlines-and-facts.html 

https://www.cnbc.com/2018/03/30/gdpr-everything-you-need-to-know.html

https://www.youtube.com/watch?v=gHihQAf3o-Q 

https://www.forbes.com/sites/forbestechcouncil/2017/12/04/yes-the-gdpr-will-affect-your-u-s-based-business/#1c0184a36ff2

 

Tags:
  • Chart Topping Tech!
  • Cyber Security
  • Staying Safe
0 Points

Previous Article

Beginners Guide: Blockchain, Bitcoin, and Breaking-In!

Next Article

Case Closed: What Carpenter v. United States means for your privacy


深圳SEO优化公司崇左至尊标王多少钱吉安百度关键词包年推广吉安网站改版价格岳阳网站改版公司通辽百度竞价多少钱双龙百度关键词包年推广公司吉祥百搜标王报价德州网站优化按天收费公司佛山建设网站哪家好潍坊seo公司塘坑至尊标王多少钱吕梁网站排名优化报价杭州关键词排名包年推广多少钱泸州网站seo优化哪家好吕梁百度爱采购报价济南如何制作网站多少钱甘孜推广网站公司宜春英文网站建设哪家好大丰企业网站建设公司大丰网站优化软件推荐天水SEO按天计费价格北海网站推广系统多少钱垦利阿里店铺运营报价崇左网站优化推广四平模板制作多少钱沧州建站青岛网站推广工具哪家好南山设计网站推荐防城港百度seo推荐秦皇岛网站推广公司歼20紧急升空逼退外机英媒称团队夜以继日筹划王妃复出草木蔓发 春山在望成都发生巨响 当地回应60岁老人炒菠菜未焯水致肾病恶化男子涉嫌走私被判11年却一天牢没坐劳斯莱斯右转逼停直行车网传落水者说“没让你救”系谣言广东通报13岁男孩性侵女童不予立案贵州小伙回应在美国卖三蹦子火了淀粉肠小王子日销售额涨超10倍有个姐真把千机伞做出来了近3万元金手镯仅含足金十克呼北高速交通事故已致14人死亡杨洋拄拐现身医院国产伟哥去年销售近13亿男子给前妻转账 现任妻子起诉要回新基金只募集到26元还是员工自购男孩疑遭霸凌 家长讨说法被踢出群充个话费竟沦为间接洗钱工具新的一天从800个哈欠开始单亲妈妈陷入热恋 14岁儿子报警#春分立蛋大挑战#中国投资客涌入日本东京买房两大学生合买彩票中奖一人不认账新加坡主帅:唯一目标击败中国队月嫂回应掌掴婴儿是在赶虫子19岁小伙救下5人后溺亡 多方发声清明节放假3天调休1天张家界的山上“长”满了韩国人?开封王婆为何火了主播靠辱骂母亲走红被批捕封号代拍被何赛飞拿着魔杖追着打阿根廷将发行1万与2万面值的纸币库克现身上海为江西彩礼“减负”的“试婚人”因自嘲式简历走红的教授更新简介殡仪馆花卉高于市场价3倍还重复用网友称在豆瓣酱里吃出老鼠头315晚会后胖东来又人满为患了网友建议重庆地铁不准乘客携带菜筐特朗普谈“凯特王妃P图照”罗斯否认插足凯特王妃婚姻青海通报栏杆断裂小学生跌落住进ICU恒大被罚41.75亿到底怎么缴湖南一县政协主席疑涉刑案被控制茶百道就改标签日期致歉王树国3次鞠躬告别西交大师生张立群任西安交通大学校长杨倩无缘巴黎奥运

深圳SEO优化公司 XML地图 TXT地图 虚拟主机 SEO 网站制作 网站优化