{"id":2534,"date":"2018-04-26T15:13:11","date_gmt":"2018-04-26T12:13:11","guid":{"rendered":"https:\/\/www.intraders.org\/news\/?p=2534"},"modified":"2019-05-27T01:04:23","modified_gmt":"2019-05-26T22:04:23","slug":"datasafe","status":"publish","type":"post","link":"https:\/\/www.intraders.org\/news\/ot\/datasafe\/","title":{"rendered":"Is our personal data safe? The importance of GDPR compliance in the light of cybersecurity breaches"},"content":{"rendered":"<p style=\"text-align: left;\"><em>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <\/em>Nowadays, everyone\u2019s personal information is stored in a certain place, whether it is online, offline or both; therefore, we can say that almost all that we do has a \u201eledger\u201d of our social and financial activities. The dubious aspects come from the fact that most of the times we do not give any consent regarding our personal data storage, which operators not only collect, but also process to their own benefit. To what extent the companies which collect our data can process and leverage it in order to predict certain behaviours and determine the sample population\u2019s preferences it is unclear to most of us. On the other hand, the most striking data breaches are finally raising the awareness for the risks of providing personal data when we go online. &nbsp;The right to have your personal data protected really exists and it is targeted by the European Union regulation, which has been updated in the last years, in order &nbsp;to increase companies\u2019 compliance.<\/p>\n<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Hence, the legislation has evolved into the of <em>REGULATION (EU) 2016\/679 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL of 27 April 2016 on the protection natural persons with regard to the processing of personal data and on the free movement of such data<\/em>, and repealing Directive 95\/46\/EC (<strong><u>General Data Protection Regulation<\/u><\/strong>). GDPR is the current enforced legal basis with which all companies processing the personal data of data subjects residing in the Union, regardless of the company\u2019s location have to comply. This regulation consists of comprehensive data privacy standards, meaning that the range of potential data processors varies from telecommunications companies, recruiting firms to every employer keeping a record of his employees, including public institutions. In order to meet the requirements, the companies need a DPO (<u>Data Protection Officer<\/u>), who can be an existent employee trained on GDPR or an external&nbsp; service provider.<\/p>\n<p><strong><em>What are the consequences of non-compliance with GDPR?<\/em><\/strong><\/p>\n<p>Non-compliance can lead to serious infringement situations, which result in up to 4% of annual global turnover or \u20ac20 Million (whichever is greater). The more critical the infringement, the higher the penalties, namely: &nbsp;a company \u201ecan be fined 2% for not having their records in order, not notifying the supervising authority and data subject about a breach or not conducting impact assessment\u201d, according to <a href=\"https:\/\/www.eugdpr.org\/key-changes.html\">https:\/\/www.eugdpr.org\/key-changes.html<\/a>.<\/p>\n<p><strong><em>Why has GDPR become an overheated debate at the moment?<\/em><\/strong><\/p>\n<p>The due date for compliance is <u>25th May 2018<\/u>, meaning that after GDPR comes into effect, non-compliant organizations are exposed to heavy fines.<\/p>\n<p><strong><em>What are the rights of data subjects? <\/em><\/strong><\/p>\n<p>All EU citizens have the right to access the data a controller has about them, meaning that we can ask every social network for a copy of the data they collected about us; the right to be forgotten; the data portability right and so on. Our first thought is that Facebook will never give us a copy of the data they have about us and we are probably right &#8230;. until now. (<em>https:\/\/medium.com\/personaldata-io\/cambridge-analytica-demonstrably-non-compliant-with-data-protection-law-95ec5712b61<\/em> for an insight into Cambridge Analytica and the infringement of data subjects\u2019 rights).&nbsp; Many of you should have been receiving e-mails by now from the companies to whom you subscribed in the past in order to prolong your subscription. Why does this happen? Because consent from data subjects is vital in the GDPR compliance context.<\/p>\n<p><a href=\"https:\/\/www.intraders.org\/news\/wp-content\/uploads\/2018\/04\/20160206_blp522.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-medium wp-image-2536\" src=\"https:\/\/www.intraders.org\/news\/wp-content\/uploads\/2018\/04\/20160206_blp522-300x169.jpg\" alt=\"\" width=\"300\" height=\"169\" srcset=\"https:\/\/www.intraders.org\/news\/wp-content\/uploads\/2018\/04\/20160206_blp522-300x169.jpg 300w, https:\/\/www.intraders.org\/news\/wp-content\/uploads\/2018\/04\/20160206_blp522.jpg 595w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a>Personal data is a pillar of our identity and integrity. Be it an e-mail address, an insurance code, a street address, or even the computer IP, we need to have them protected.&nbsp; Every breach in data privacy makes us vulnerable from many points of view and more easily to control and manipulate, because we become predictable patterns of behaviour.<\/p>\n<p>If interested, you have below a link to an article on the most infamous data breaches, which reveals things we might want to have a second thought on.<\/p>\n<p><a href=\"https:\/\/www.techworld.com\/security\/uks-most-infamous-data-breaches-3604586\/\">https:\/\/www.techworld.com\/security\/uks-most-infamous-data-breaches-3604586\/<\/a><\/p>\n<p><strong>Phd. Irina Badea<\/strong>,<\/p>\n<p>University of Craiova, Romania<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Have you ever thought that placing an online order for pizza or downloading an app on your phone to count your meal\u2019s calories can threaten your privacy and security?<\/p>\n","protected":false},"author":12,"featured_media":2543,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[305,331,327,330,329,328],"yst_prominent_words":[908,914,903,904,906,905,902,909,919,917,916,918,910,907,901,915,913,911,826,912],"class_list":["post-2534","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ot","tag-business","tag-cybersecurity","tag-data-safe","tag-gdpr","tag-information-technology","tag-it"],"_links":{"self":[{"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/posts\/2534","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/comments?post=2534"}],"version-history":[{"count":0,"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/posts\/2534\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/media\/2543"}],"wp:attachment":[{"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/media?parent=2534"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/categories?post=2534"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/tags?post=2534"},{"taxonomy":"yst_prominent_words","embeddable":true,"href":"https:\/\/www.intraders.org\/news\/wp-json\/wp\/v2\/yst_prominent_words?post=2534"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}