The EU GDPR (General Data Protection Regulation) places many obligations on organisations that process personal data – which is pretty much all of them. Unsurprisingly, that can feel overwhelming. If you need a bit of help understanding what you need to do to comply with the Regulation, this blog provides a summary of ten key GDPR requirements: 1. Lawful, fair and transparent processing The first data protection principle (in Article 5) demands that organisations document a lawful basis, such as legitimate interest or consent, for processing personal data. Data subjects must also be aware of what personal data you’re collecting and why you’re collecting it. Many
The post 10 Key EU GDPR Requirements appeared first on IT Governance Blog.