Skip to content

Topic

GDPR

9 articles

Latest

  • Data Protection and BCM: Why Resilience Only Works When Combined

    How are data protection and BCM related? The GDPR demands more than just data security; it requires availability and crisis resilience. In practice, however, data protection and business continuity management are often separated organizationally. This article shows why effective data protection fails without coordinated BCM and how companies can successfully integrate reporting requirements, recovery times, roles, and responsibilities.

    ITChristopher Schroer14 minutes

  • EU Data Act explained - GDPR 2.0, even more effort or false alarm?

    The EU Data Act follows the EU GDPR, which came into force in 2018 and ushered in a new era of data protection law. However, what previously only applied to personal data is now being applied to all types of usage data in IoT and digital products - because only what has been contractually agreed may be processed. On this basis, users are also granted far-reaching rights to the usage data in smart home appliances, for example.

    Regulations & LawsPhilipp Schneidenbach10 minutes

  • Data protection and DSGVO - 5 stumbling blocks for SMEs

    For small and medium-sized enterprises (SMEs), it is often difficult to meet the data protection requirements according to the GDPR. Even with few resources for this topic, the data protection requirements apply to SMEs just as they do to larger companies, and so SMEs are not spared from audits by the data protection supervisory authorities. However, the need to act in a data protection-compliant manner should not only be seen in connection with possible fines and loss of reputation, but should also be used as a competitive advantage in view of the growing importance of data protection for end customers as well as in B2B business.

    Data protectionDIGITAL BREAKFAST7 minutes

  • Understanding the New EU Standard Contractual Clauses (SCC) - What to do?

    Sch-rems II rulings have shaken up international data transfers. The Privacy Shield agreement with the US was declared invalid and now most companies have resorted to the so-called EU Standard Contractual Clauses (SCC). In a second ruling, however, the ECJ also commented on the SCCs and new SCC contract sets were put on the table, which now have to be transferred.

    Data protectionYves Gogniat5 minutes

  • Data protection and bring your own device (BYOD)

    When employees use their private devices, such as smartphones or laptops, as work equipment, it becomes complicated for employers. On the one hand, employees want to work on their familiar devices, but on the other hand, management is obliged to comply with data protection. However, this dilemma between practicality and compliance can be solved.

    Data protectionKarin Dietl5 minutes

  • What does the General Data Protection Regulation (GDPR) mean for companies outside the EU?

    Until now, EU Data Protection Laws have only applied to companies with a presence in the EU. The General Data Protection Regulation (GDPR) now deviates from this principle, with the consequence that the new law not only affects companies within the EU but also countries outside its borders. In certain situations, the GDPR is also applicable to companies (controllers) outside the EU. The potential cross-border applicability has left many companies outside the EU confused, and it has led to uncertainty.

    Data protectionYves Gogniat12 minutes