{"id":2996,"date":"2020-04-09T18:36:04","date_gmt":"2020-04-09T13:06:04","guid":{"rendered":"https:\/\/www.24x7serversupport.com\/blog\/?p=2996"},"modified":"2020-04-10T18:50:58","modified_gmt":"2020-04-10T13:20:58","slug":"are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites","status":"publish","type":"post","link":"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/","title":{"rendered":"Are You Ready For The GDPR Policies To Be Setup On Your Websites?"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">What are the obligations and concrete applications for companies?<\/h2>\n\n\n\n<p>The General Data Protection Regulation (GDPR) represents an important modernization of European laws on this subject.\u00a0<strong>\u00a0It will enter into force in all member states of the European Union in May 2018.<\/strong><\/p>\n\n\n\n<p>The&nbsp;GDPR&nbsp;data protection regulation&nbsp;is intended to be a counterweight to the spectacular advances in technology and in particular the Internet which over time allow merchants, advertisers and other organizations to recover more and more personal data and make massive use of it without the persons concerned necessarily knowing it and \/ or being able to request that the exploitation of the data concerning them cease.<\/p>\n\n\n\n<p>It is very restrictive for companies and for all systems that process personal data.&nbsp;All European companies and all companies that manage data on European territory or of European citizens are affected.&nbsp;<strong>Failure to comply may result in fines of 4% of a company&#8217;s annual global turnover or 20 million euros<\/strong>&nbsp;(section 83.6 of the Regulations).<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">&nbsp;Extension of the concept of personal data<\/h2>\n\n\n\n<p>A \u201cpersonal data\u201d is for the GDPR \u201cany information relating to an identified or identifiable natural person\u201d, \u201cdirectly or indirectly\u201d, in particular by a name, an online identifier or location data.<br>This implies that in\u00a0<strong>addition to obvious personal data such as name, email, elements such as IP address, geolocation or crossed cookie information are also concerned<\/strong>.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">5 essential points<\/h2>\n\n\n\n<p>We can summarize the essentials of the GDPR in 5 points.<\/p>\n\n\n\n<p>1. Mandatory notifications of data breaches<br><strong>The regulations oblige to report any data breach (or personal data breach) within 72 hours<\/strong>&nbsp;.<br>This has an obvious impact on the relationships that any company maintains with its service providers since each member of the chain will have to assure the others that it has put in place all the measures necessary to avoid data leaks.<\/p>\n\n\n\n<p>2. Right to be forgotten<\/p>\n\n\n\n<p>The right to be forgotten, already implemented for Google search results, is extended.&nbsp;Concretely,&nbsp;<strong>the websites and organizations which manage data must respond positively to any request for deletion of personal data.<\/strong><\/p>\n\n\n\n<p>3. Reinforcement of the obligation of consent<br>The GDPR signs the end of the default agreement regarding the use of personal data.<br>It will also be up to the data managers and their processing to prove that consent has been obtained.\u00a0They should also keep track of this consent.<br>The agreement must be requested clearly and separately.\u00a0This implies for example that\u00a0<strong>on a website, the request for data recording must be the subject of a separate form, without pre-filled boxes.<\/strong><br>Anyone agreeing to the use of their data may reverse their decision.<br>Also, note that <strong>companies can no longer make the use of their service subject to the refusal to use personal data.<\/strong><\/p>\n\n\n\n<p>4. Collection of data only for specific, explicit and legitimate purposes<br><strong>Companies must specify the purpose of the data processing and only recover the data necessary for this processing.<\/strong><br>The data retention period may not exceed that necessary for this purpose.<\/p>\n\n\n\n<p>5. Responsibility for data management<br>Companies that manage personal data must at all times be able to prove that they comply with the General Data Protection Regulations (GDPR).&nbsp;In France it is the CNIL which will verify this.<\/p>\n\n\n\n<p><strong>If the company has more than 250 employees, it must have a DPO (Data Protection Officer)<\/strong>, whose role will be to:<br>\u2022 Monitor the implementation of the GDPR and staff training, with a de facto focus on marketing, communication, and HR.<br>\u2022 Describe the processes and purposes of data collection, the flows of data collected, their nature and the actions of any subcontractors (and keep an updated register of all processing of personal data and of the subcontractors having access to it; this register must be permanently consultable by the CNIL).<br>\u2022 Register the recipients of personal data, the location of these and the time limits for their erasure.<br>\u2022 Manage responses to requests from the supervisory authority, individuals and resolve any cases of GDPR violation.<\/p>\n\n\n\n<p>Significant changes, including at the contractual level, will have to take place so that all the actors in a data processing chain can jointly guarantee their security and compliance with the GDPR.&nbsp;<strong>Specific clauses are recommended on this subject in contracts with subcontractors.<\/strong><\/p>\n\n\n\n<p>Until now, the use of personal data was often made without asking the authorization of the persons concerned or by having them confirm their agreement by default.<br>The GDPR reverses this state of affairs by preventing by default the collection of personal data from individuals and by anyway limiting it to a specific framework and use.<br>Concretely, each company will have to prepare for the GDPR because even from its website, it retrieves data.&nbsp;<strong>Only data strictly necessary for the pursuit of your objectives should be collected and processed.<\/strong><\/p>\n\n\n\n<p><strong>The recovery and processing of data must be carried out within the framework of a contract with the consent of the person<\/strong>&nbsp;(obtained by comprehensible system means and separate from the collection) and the information notices must comply with new laws.<\/p>\n\n\n\n<p><strong>The means of access and correction \/ deletion of data by the persons concerned must be put in place.<\/strong><\/p>\n\n\n\n<p><strong>A data security system making it possible to avoid or warn of data leaks must be set up,<\/strong>&nbsp;also involving (technically and legally) the service providers or subcontractors having a relationship with this data.<\/p>\n\n\n\n<p>Finally,&nbsp;<strong>large companies will need to have a DPO<\/strong>&nbsp;.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>What are the obligations and concrete applications for companies? The General Data Protection Regulation (GDPR) represents an important modernization of European laws on this subject.\u00a0\u00a0It will enter into force in all member states of the European Union in May 2018. The&nbsp;GDPR&nbsp;data protection regulation&nbsp;is intended to be a counterweight to the spectacular advances in technology and [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":2997,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[6],"tags":[284,285],"class_list":["post-2996","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology","tag-gdpr","tag-policy"],"jetpack_publicize_connections":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v22.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Are You Ready For The GDPR Policies To Be Setup On Your Websites? | 24x7serversupport Blog<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Are You Ready For The GDPR Policies To Be Setup On Your Websites? | 24x7serversupport Blog\" \/>\n<meta property=\"og:description\" content=\"What are the obligations and concrete applications for companies? The General Data Protection Regulation (GDPR) represents an important modernization of European laws on this subject.\u00a0\u00a0It will enter into force in all member states of the European Union in May 2018. The&nbsp;GDPR&nbsp;data protection regulation&nbsp;is intended to be a counterweight to the spectacular advances in technology and [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/\" \/>\n<meta property=\"og:site_name\" content=\"24x7serversupport Blog\" \/>\n<meta property=\"article:published_time\" content=\"2020-04-09T13:06:04+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-04-10T13:20:58+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/i0.wp.com\/www.24x7serversupport.com\/blog\/wp-content\/uploads\/2020\/04\/GDPR.jpg?fit=598%2C505&ssl=1\" \/>\n\t<meta property=\"og:image:width\" content=\"598\" \/>\n\t<meta property=\"og:image:height\" content=\"505\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"24x7support\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@24x7serversuppo\" \/>\n<meta name=\"twitter:site\" content=\"@24x7serversuppo\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"24x7support\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/\",\"url\":\"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/\",\"name\":\"Are You Ready For The GDPR Policies To Be Setup On Your Websites? | 24x7serversupport Blog\",\"isPartOf\":{\"@id\":\"https:\/\/www.24x7serversupport.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/i0.wp.com\/www.24x7serversupport.com\/blog\/wp-content\/uploads\/2020\/04\/GDPR.jpg?fit=598%2C505&ssl=1\",\"datePublished\":\"2020-04-09T13:06:04+00:00\",\"dateModified\":\"2020-04-10T13:20:58+00:00\",\"author\":{\"@id\":\"https:\/\/www.24x7serversupport.com\/blog\/#\/schema\/person\/decfb5fad6bde6ac6822d4e965c6d401\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/#primaryimage\",\"url\":\"https:\/\/i0.wp.com\/www.24x7serversupport.com\/blog\/wp-content\/uploads\/2020\/04\/GDPR.jpg?fit=598%2C505&ssl=1\",\"contentUrl\":\"https:\/\/i0.wp.com\/www.24x7serversupport.com\/blog\/wp-content\/uploads\/2020\/04\/GDPR.jpg?fit=598%2C505&ssl=1\",\"width\":598,\"height\":505,\"caption\":\"GDPR\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.24x7serversupport.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Are You Ready For The GDPR Policies To Be Setup On Your Websites?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.24x7serversupport.com\/blog\/#website\",\"url\":\"https:\/\/www.24x7serversupport.com\/blog\/\",\"name\":\"24x7serversupport Blog\",\"description\":\"Linux | CPanel | WHM | webhosting| Plesk | DirectAdmin | CentOs | Debian | Ubuntu Blog\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.24x7serversupport.com\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.24x7serversupport.com\/blog\/#\/schema\/person\/decfb5fad6bde6ac6822d4e965c6d401\",\"name\":\"24x7support\",\"url\":\"https:\/\/www.24x7serversupport.com\/blog\/author\/24x7support\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Are You Ready For The GDPR Policies To Be Setup On Your Websites? | 24x7serversupport Blog","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/","og_locale":"en_US","og_type":"article","og_title":"Are You Ready For The GDPR Policies To Be Setup On Your Websites? | 24x7serversupport Blog","og_description":"What are the obligations and concrete applications for companies? The General Data Protection Regulation (GDPR) represents an important modernization of European laws on this subject.\u00a0\u00a0It will enter into force in all member states of the European Union in May 2018. The&nbsp;GDPR&nbsp;data protection regulation&nbsp;is intended to be a counterweight to the spectacular advances in technology and [&hellip;]","og_url":"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/","og_site_name":"24x7serversupport Blog","article_published_time":"2020-04-09T13:06:04+00:00","article_modified_time":"2020-04-10T13:20:58+00:00","og_image":[{"width":598,"height":505,"url":"https:\/\/i0.wp.com\/www.24x7serversupport.com\/blog\/wp-content\/uploads\/2020\/04\/GDPR.jpg?fit=598%2C505&ssl=1","type":"image\/jpeg"}],"author":"24x7support","twitter_card":"summary_large_image","twitter_creator":"@24x7serversuppo","twitter_site":"@24x7serversuppo","twitter_misc":{"Written by":"24x7support","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/","url":"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/","name":"Are You Ready For The GDPR Policies To Be Setup On Your Websites? | 24x7serversupport Blog","isPartOf":{"@id":"https:\/\/www.24x7serversupport.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/#primaryimage"},"image":{"@id":"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/#primaryimage"},"thumbnailUrl":"https:\/\/i0.wp.com\/www.24x7serversupport.com\/blog\/wp-content\/uploads\/2020\/04\/GDPR.jpg?fit=598%2C505&ssl=1","datePublished":"2020-04-09T13:06:04+00:00","dateModified":"2020-04-10T13:20:58+00:00","author":{"@id":"https:\/\/www.24x7serversupport.com\/blog\/#\/schema\/person\/decfb5fad6bde6ac6822d4e965c6d401"},"breadcrumb":{"@id":"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/#primaryimage","url":"https:\/\/i0.wp.com\/www.24x7serversupport.com\/blog\/wp-content\/uploads\/2020\/04\/GDPR.jpg?fit=598%2C505&ssl=1","contentUrl":"https:\/\/i0.wp.com\/www.24x7serversupport.com\/blog\/wp-content\/uploads\/2020\/04\/GDPR.jpg?fit=598%2C505&ssl=1","width":598,"height":505,"caption":"GDPR"},{"@type":"BreadcrumbList","@id":"https:\/\/www.24x7serversupport.com\/blog\/are-you-ready-for-the-gdpr-policies-to-be-setup-on-your-websites\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.24x7serversupport.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Are You Ready For The GDPR Policies To Be Setup On Your Websites?"}]},{"@type":"WebSite","@id":"https:\/\/www.24x7serversupport.com\/blog\/#website","url":"https:\/\/www.24x7serversupport.com\/blog\/","name":"24x7serversupport Blog","description":"Linux | CPanel | WHM | webhosting| Plesk | DirectAdmin | CentOs | Debian | Ubuntu Blog","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.24x7serversupport.com\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.24x7serversupport.com\/blog\/#\/schema\/person\/decfb5fad6bde6ac6822d4e965c6d401","name":"24x7support","url":"https:\/\/www.24x7serversupport.com\/blog\/author\/24x7support\/"}]}},"jetpack_featured_media_url":"https:\/\/i0.wp.com\/www.24x7serversupport.com\/blog\/wp-content\/uploads\/2020\/04\/GDPR.jpg?fit=598%2C505&ssl=1","jetpack_sharing_enabled":true,"jetpack_likes_enabled":true,"jetpack-related-posts":[],"_links":{"self":[{"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/posts\/2996","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/comments?post=2996"}],"version-history":[{"count":1,"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/posts\/2996\/revisions"}],"predecessor-version":[{"id":2998,"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/posts\/2996\/revisions\/2998"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/media\/2997"}],"wp:attachment":[{"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/media?parent=2996"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/categories?post=2996"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.24x7serversupport.com\/blog\/wp-json\/wp\/v2\/tags?post=2996"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}