SlideShare una empresa de Scribd logo
1 de 27
Descargar para leer sin conexión
1	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
Learning    Lab
Is  Your  Organiza.on  Ready  for  the  
General  Data  Protec.on  Regula.on?
Jonathan  Adams,    Research  Director
GDPR
2	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
Peter	
  Steiner;	
  New	
  Yorker	
  Magazine;	
  July	
  1993	
  
3	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
GDPR
3  Reasons  to  Care
4	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
1.	
  Reduce	
  Costs	
  
Fines	
  up	
  to	
  4%	
  of	
  Global	
  Revenue	
  
*2016	
  Annual	
  Revenues	
  
5	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
2.	
  Increase	
  Margins	
  
GDPR	
  Capabili)es	
  support	
  digital	
  transforma)on	
  goals	
  and	
  drive	
  
new	
  business	
  models:	
  
•  Consumer	
  
Centric	
  PLM	
  
	
  
•  Supply	
  Chain	
  &	
  
Channel	
  
OpAmizaAon	
  
	
  
•  Customer	
  360	
  
programs	
  
	
  
6	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
3.	
  Grow	
  Revenue	
  
Data	
  MoneAzaAon	
  &	
  
New	
  Revenue	
  Streams	
  
•  Sports	
  “Wearables”	
  
•  Self	
  Iden)fica)on	
  at	
  POI	
  
•  Cloud	
  Based	
  Services	
  
“Trust”	
  with	
  Partners	
  	
  
&	
  Customers	
  	
  
7	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
The	
  Clock	
  is	
  Ticking…	
  
8	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
Defining	
  GDPR	
  
GDPR	
  is	
  a	
  comprehensive	
  set	
  of	
  privacy	
  regula)ons	
  designed	
  to	
  protect	
  data	
  for	
  individuals	
  
within	
  the	
  European	
  Union.	
  	
  
	
  
ObjecAve:	
  	
  
•  Give	
  individuals	
  control	
  of	
  their	
  personal	
  data	
  
•  Regulatory	
  consistency	
  across	
  the	
  EU	
  
	
  
Impact:	
  
•  Covers	
  personal	
  data	
  collected	
  in	
  EU	
  regardless	
  of	
  where	
  the	
  data	
  
collector	
  is	
  located	
  	
  
•  All	
  US	
  based	
  mul)	
  na)onals	
  doing	
  business	
  with	
  people	
  in	
  Europe	
  
will	
  be	
  impacted	
  
9	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
GDPR’s	
  Impact	
  on	
  Companies	
  
Any	
  business	
  (foreign	
  or	
  domes)c)	
  engaged	
  with	
  individuals	
  within	
  the	
  EU	
  
	
  	
  
The	
  no)on	
  of	
  Personally	
  Iden)fiable	
  Informa)on	
  (PII)	
  is	
  broadly	
  defined:	
  data	
  
that	
  has	
  the	
  poten&al	
  to	
  iden)fy	
  a	
  person	
  living	
  in	
  Europe	
  falls	
  under	
  the	
  GDPR	
  
	
  
GDPR	
  applies	
  “horizontally”	
  across	
  the	
  organiza)on’s	
  business	
  components,	
  
and	
  “ver)cally”	
  at	
  all	
  decision	
  making	
  levels.	
  
	
  
GDPR	
  applies	
  across	
  the	
  complete	
  value	
  chain.	
  Organiza)ons	
  are	
  obligated	
  to	
  
verify	
  the	
  compliance	
  of	
  par)es	
  with	
  which	
  they	
  do	
  business.	
  
10	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
11	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
GDPR	
  Requires	
  InterpretaAon	
  
General  Data  
Protec.on  Regula.on
12	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
GDPR	
  Requires	
  InterpretaAon	
  
It’s	
  Comprehensive	
  &	
  Tightly	
  WriVen	
  
•  All	
  personal	
  informa)on	
  regardless	
  of	
  where	
  it	
  came	
  from	
  and	
  how	
  it	
  is	
  used	
  is	
  governed	
  
	
  
It’s	
  Principle	
  Based	
  
•  Requires	
  companies	
  to	
  adopt	
  privacy	
  principles	
  at	
  the	
  cultural	
  level	
  
	
  
It’s	
  Compromise	
  LegislaAon	
  
•  GDPR	
  is	
  a	
  piece	
  of	
  what	
  legal	
  scholars	
  call	
  compromise	
  legisla)on:	
  a	
  legisla)ve	
  text	
  that	
  tries	
  to	
  
sa)sfy	
  two	
  starkly	
  opposed	
  sides	
  of	
  the	
  data	
  protec)on	
  debate	
  
	
  
When	
  InterpretaAon	
  is	
  Required,	
  Best	
  PracAces	
  are	
  CriAcal	
  
13	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
The	
  Governance	
  Challenge	
  
	
  	
  	
  Crea)ng	
  transparent	
  &	
  	
  	
  	
  
	
  	
  	
  defensible	
  best	
  prac)ces	
  	
  
that	
  address	
  “principles”	
  
14	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
Risk	
  
Management	
  
Accountability	
  
Org	
  Design	
  
Data	
  Lineage	
  
Process	
  
Alignment	
  
PII	
  Cataloging	
   Interna)onal	
  
Partner	
  
Management	
  
Metadata	
  	
  
Data	
  
Governance	
  
Data	
  
Architecture	
  
Data	
  
Opera)ons	
  
Data	
  Discovery	
  
Best	
  Prac)ces	
  
Security	
  
Data	
  
Management	
  
Privacy	
  
Cloud	
  Services	
  
IoT	
  
The	
  Governance	
  Challenge	
  
Mapping	
  the	
  best	
  prac)ces	
  to	
  observable	
  &	
  measurable	
  	
  
ac)vi)es	
  across	
  many	
  func)onal	
  areas	
  
15	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
The	
  4	
  Core	
  CapabiliAes	
  
GDPR	
  requirements	
  can	
  be	
  simplified	
  by	
  
organizing	
  around	
  four	
  core	
  capability	
  areas:	
  
	
  
Consulta)on	
  
&	
  Repor)ng	
  
•  Cer)fica)on	
  
•  Risk	
  Management	
  
•  Organiza)onal	
  
Alignment	
  
•  Data	
  by	
  Design	
  
•  Risk	
  Management	
  
•  Communica)on	
  
•  Remedia)on	
  
•  People	
  
•  Partners	
  
•  Regulators	
  
•  OrganizaAon	
  
16	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
1
2
3
4
Forget	
  
Art.	
  17	
  
Quaran)ne	
  
Art.	
  18	
  
Package	
  	
  
Art.	
  20	
  
Fix	
  
Art.	
  16	
  
Cer)fica)on	
  
Art.	
  42	
  
Risk	
  
Management	
  
Art.	
  32	
  
Processor	
  
Compliance	
  
Art.	
  28	
  
Data	
  
Management	
  
Art.	
  6,7,9,14	
  
Interna)onal	
  
Art.	
  27,	
  44,45,46,47,48,49	
  
Best	
  Prac)ces	
  
Art.	
  25,40,42,41,43	
  
Risk	
  
Management	
  
Art.	
  32,35,36	
  
Accountability	
  
Art.	
  37,38,39	
  
Consulta)on	
  
Art	
  36	
  
Best	
  Prac)ces	
  
Art	
  40	
  
Consent	
  
Art.	
  6,7,8,9,10	
  
No)fica)on	
  
Art.	
  12	
  
Mapping	
  to	
  the	
  RegulaAon	
  
17	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
Datum's	
   Advisory	
   Services	
   group	
   leverages	
   our	
  
proprietary	
  data	
  governance	
  model	
   	
  Capture	
  Key	
  
governance	
   components	
   and	
   structure	
   the	
  
governance	
  opera)ng	
  model	
  to	
  transparently	
  and	
  
defensibly	
  achieve	
  GDPR	
  compliance	
  
DATUM’s	
  	
  
InformaAon	
  Value	
  Management®	
  
How	
  DATUM	
  Can	
  Help	
  
DATUM’s	
  GDPR	
  Readiness	
  	
  
Assessment	
  &	
  Roadmap	
  
DATUM’s	
   Informa)on	
   Value	
   Management®	
   sojware	
   plakorm	
  
allows	
   you	
   to	
   implement	
   this	
   governance	
   opera)ng	
   model	
  
throughout	
   the	
   organiza)on	
   by	
   discovering,	
   understanding	
   and	
  
connec)ng	
  the	
  cri)cal	
  data	
  to	
  important	
  business	
  value	
  drivers.	
  
Informa)on	
   Value	
   Management®	
   also	
   comes	
   with	
   a	
   library	
   of	
  
resources	
  that	
  help	
  jump	
  start	
  customers’	
  GDPR	
  ini)a)ves.	
  	
  
18	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
Where	
  to	
  Start:	
  3	
  QuesAons	
  
3
2
Can	
  I	
  catalog	
  my	
  GDPR	
  related	
  data?	
  
Do	
  I	
  know	
  where	
  and	
  how	
  it	
  is	
  used?	
  
Do	
  I	
  have	
  a	
  governance	
  process	
  with	
  
observable	
  and	
  measurable	
  controls?	
  
1
19	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
1.	
  Can	
  I	
  Catalog	
  my	
  GDPR	
  Related	
  Data?	
  	
  
20	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
Knowing	
  what	
  PII	
  you	
  have	
  and	
  how	
  it	
  is	
  organized	
  is	
  founda)onal	
  
	
  	
  Can	
  I	
  catalog	
  my	
  GDPR	
  	
  
	
  	
  related	
  data?	
  
•  If	
  asked	
  what	
  is	
  GDPR	
  PII,	
  can	
  a	
  
data	
  dic)onary	
  be	
  produced?	
  
	
  
•  Is	
  it	
  detailed	
  enough	
  to	
  apply	
  
governance?	
  
	
  	
  If	
  the	
  Answer	
  is	
  No…	
  
•  If	
  I	
  you	
  don’t	
  know	
  where	
  it	
  is,	
  you	
  
I	
  can’t	
  apply	
  any	
  sort	
  of	
  
governance	
  
1.	
  Can	
  I	
  Catalog	
  my	
  GDPR	
  Related	
  Data?	
  	
  
21	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
Who	
  is	
  in	
  charge?	
  Why	
  is	
  this	
  informaAon	
  valuable?	
  And	
  what	
  is	
  the	
  impact	
  of	
  a	
  privacy	
  breach?	
  
2.	
  Where	
  Is	
  It	
  and	
  How	
  Is	
  It	
  Used	
  
22	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
2
	
  	
  Do	
  I	
  know	
  where,	
  how	
  	
  
	
  	
  and	
  who	
  uses	
  it?	
  	
  
•  What	
  business	
  processes	
  use	
  GDPR	
  
PII?	
  
	
  
•  Why	
  do	
  they	
  need	
  PII?	
  
	
  
•  How	
  cri)cal	
  is	
  the	
  PII?	
  
	
  	
  Accountability	
  is	
  Key	
  
•  I	
  cannot	
  fix	
  things	
  if	
  no	
  one	
  is	
  
accountable!	
  
	
  
•  Understanding	
  value	
  and	
  impact	
  
priori)zes	
  resources	
  
2.	
  Where	
  Is	
  It	
  and	
  How	
  Is	
  It	
  Used	
  
23	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
3.	
  Do	
  I	
  have	
  a	
  Governance	
  Process?	
  
2
	
  	
  Do	
  I	
  have	
  a	
  governance	
  	
  
	
  	
  process	
  with	
  observable	
  	
  
	
  	
  and	
  measurable	
  controls?	
  
	
  	
  Demonstrable	
  due	
  	
  
	
  	
  diligence	
  
	
  	
  Governance	
  from	
  policy	
  to	
  	
  
	
  	
  data	
  mi)gates	
  risk	
  
How	
  do	
  I	
  make	
  engaging	
  with	
  regulators	
  a	
  posi)ve	
  
experience?	
  
24	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
The	
  IVM	
  demonstraAon	
  drills	
  down	
  on	
  these	
  three	
  foundaAonal	
  
uses	
  cases	
  
Can	
  I	
  catalog	
  my	
  GDPR	
  related	
  
data?	
  
•  If	
  asked	
  what	
  is	
  GDPR	
  PII,	
  can	
  a	
  
data	
  dic)onary	
  be	
  produced?	
  
•  Is	
  it	
  detailed	
  enough	
  to	
  apply	
  
governance?	
  
Do	
  I	
  know	
  where,	
  how	
  and	
  by	
  
whom	
  it	
  is	
  used?	
  
•  What	
  business	
  processes	
  use	
  GDPR	
  
PII?	
  
•  Why	
  do	
  they	
  need	
  PII?	
  
•  How	
  cri)cal	
  is	
  the	
  PII?	
  
Do	
  I	
  have	
  a	
  governance	
  process	
  
with	
  observable	
  and	
  measurable	
  
controls?	
  
It	
  all	
  starts	
  here…	
  
If	
  I	
  do	
  not	
  know	
  where	
  it	
  is	
  I	
  cannot	
  
apply	
  any	
  sort	
  of	
  governance	
  
Accountability	
  is	
  key	
  
•  I	
  cannot	
  fix	
  things	
  if	
  no	
  one	
  is	
  
accountable!	
  
•  Understanding	
  value	
  and	
  impact	
  
priori)zes	
  resources	
  
Demonstrable	
  due	
  diligence	
  
Governance	
  from	
  policy	
  to	
  data	
  
mi)gates	
  risk	
  
3
2
1
25	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
Datum's	
   Advisory	
   Services	
   group	
   leverages	
   our	
  
proprietary	
  data	
  governance	
  model	
   	
  Capture	
  Key	
  
governance	
   components	
   and	
   structure	
   the	
  
governance	
  opera)ng	
  model	
  to	
  transparently	
  and	
  
defensibly	
  achieve	
  GDPR	
  compliance	
  
DATUM’s	
  	
  
InformaAon	
  Value	
  Management®	
  
How	
  DATUM	
  Can	
  Help	
  
DATUM’s	
  GDPR	
  Readiness	
  	
  
Assessment	
  &	
  Roadmap	
  
DATUM’s	
   Informa)on	
   Value	
   Management®	
   sojware	
   plakorm	
  
allows	
   you	
   to	
   implement	
   this	
   governance	
   opera)ng	
   model	
  
throughout	
   the	
   organiza)on	
   by	
   discovering,	
   understanding	
   and	
  
connec)ng	
  the	
  cri)cal	
  data	
  to	
  important	
  business	
  value	
  drivers.	
  
Informa)on	
   Value	
   Management®	
   also	
   comes	
   with	
   a	
   library	
   of	
  
resources	
  that	
  help	
  jump	
  start	
  customers’	
  GDPR	
  ini)a)ves.	
  	
  
26	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  
Right	
  Data.	
  Right	
  Decisions.	
  Right	
  Now.	
  	
  
	
  
•  Discover	
  and	
  understand	
  the	
  data	
  available	
  to	
  your	
  company	
  
	
  
•  Connect	
  that	
  data	
  to	
  the	
  most	
  important	
  business	
  value	
  drivers	
  -­‐	
  opera)ons,	
  analy)cs	
  
and	
  compliance	
  
•  Clearly	
  measure	
  the	
  impact	
  data	
  has	
  on	
  corporate	
  ini)a)ves	
  
27	
  
Confiden)al	
  and	
  Proprietary.	
  All	
  rights	
  reserved	
  Copyright©	
  2016.	
  DATUM	
  LLC	
  

Más contenido relacionado

La actualidad más candente

The Practical Impact of the General Data Protection Regulation
The Practical Impact of the General Data Protection RegulationThe Practical Impact of the General Data Protection Regulation
The Practical Impact of the General Data Protection Regulation
Ghostery, Inc.
 

La actualidad más candente (20)

Gdpr action plan - ISSA
Gdpr action plan - ISSAGdpr action plan - ISSA
Gdpr action plan - ISSA
 
GDPR for Dummies
GDPR for DummiesGDPR for Dummies
GDPR for Dummies
 
GDPR: Your Journey to Compliance
GDPR: Your Journey to ComplianceGDPR: Your Journey to Compliance
GDPR: Your Journey to Compliance
 
GDPR: Training Materials by Qualsys
GDPR: Training Materials  by QualsysGDPR: Training Materials  by Qualsys
GDPR: Training Materials by Qualsys
 
Gdpr action plan
Gdpr action plan Gdpr action plan
Gdpr action plan
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPR
 
A practical guide to GDPR preparation
A practical guide to GDPR preparationA practical guide to GDPR preparation
A practical guide to GDPR preparation
 
Ensuring GDPR Compliance - A Zymplify Guide
Ensuring GDPR Compliance - A Zymplify GuideEnsuring GDPR Compliance - A Zymplify Guide
Ensuring GDPR Compliance - A Zymplify Guide
 
GDPR The New Data Protection Law coming into effect May 2018. What does it me...
GDPR The New Data Protection Law coming into effect May 2018. What does it me...GDPR The New Data Protection Law coming into effect May 2018. What does it me...
GDPR The New Data Protection Law coming into effect May 2018. What does it me...
 
The Practical Impact of the General Data Protection Regulation
The Practical Impact of the General Data Protection RegulationThe Practical Impact of the General Data Protection Regulation
The Practical Impact of the General Data Protection Regulation
 
An Essential Guide to EU GDPR
An Essential Guide to EU GDPRAn Essential Guide to EU GDPR
An Essential Guide to EU GDPR
 
Beginning your General Data Protection Regulation (GDPR) Journey
Beginning your General Data Protection Regulation (GDPR) JourneyBeginning your General Data Protection Regulation (GDPR) Journey
Beginning your General Data Protection Regulation (GDPR) Journey
 
GDPR Basics - General Data Protection Regulation
GDPR Basics - General Data Protection RegulationGDPR Basics - General Data Protection Regulation
GDPR Basics - General Data Protection Regulation
 
EU General Data Protection Regulation - Update 2017
EU General Data Protection Regulation - Update 2017EU General Data Protection Regulation - Update 2017
EU General Data Protection Regulation - Update 2017
 
GDPR From the Trenches - Real-world examples of how companies are approaching...
GDPR From the Trenches - Real-world examples of how companies are approaching...GDPR From the Trenches - Real-world examples of how companies are approaching...
GDPR From the Trenches - Real-world examples of how companies are approaching...
 
Getting Started with GDPR Compliance
Getting Started with GDPR ComplianceGetting Started with GDPR Compliance
Getting Started with GDPR Compliance
 
Teradata's approach to addressing GDPR
Teradata's approach to addressing GDPRTeradata's approach to addressing GDPR
Teradata's approach to addressing GDPR
 
EU GDPR - 12 Steps To Compliance
EU GDPR - 12 Steps To Compliance EU GDPR - 12 Steps To Compliance
EU GDPR - 12 Steps To Compliance
 
GDPR Presentation slides
GDPR Presentation slidesGDPR Presentation slides
GDPR Presentation slides
 
An Overview Of GDPR (General Data Protection Regulation)
An Overview Of GDPR (General Data Protection Regulation)An Overview Of GDPR (General Data Protection Regulation)
An Overview Of GDPR (General Data Protection Regulation)
 

Destacado

How JCI Prepared a Data Governance Program for Big Data & MDG on HANA
How JCI Prepared a Data Governance Program for Big Data & MDG on HANAHow JCI Prepared a Data Governance Program for Big Data & MDG on HANA
How JCI Prepared a Data Governance Program for Big Data & MDG on HANA
DATUM LLC
 

Destacado (15)

Data Discovery & Search: Making it an Integral Part of Analytics, Compliance ...
Data Discovery & Search: Making it an Integral Part of Analytics, Compliance ...Data Discovery & Search: Making it an Integral Part of Analytics, Compliance ...
Data Discovery & Search: Making it an Integral Part of Analytics, Compliance ...
 
5 Steps to Prepare for Digital Transformation & Real-Time Analytics
5 Steps to Prepare for Digital Transformation & Real-Time Analytics 5 Steps to Prepare for Digital Transformation & Real-Time Analytics
5 Steps to Prepare for Digital Transformation & Real-Time Analytics
 
Data- and database security & GDPR: end-to-end offer
Data- and database security & GDPR: end-to-end offerData- and database security & GDPR: end-to-end offer
Data- and database security & GDPR: end-to-end offer
 
CyNation: 7 Things You Should Know about EU GDPR
CyNation: 7 Things You Should Know about EU GDPRCyNation: 7 Things You Should Know about EU GDPR
CyNation: 7 Things You Should Know about EU GDPR
 
SureSkills GDPR - Discover the Smart Solution
SureSkills GDPR - Discover the Smart Solution SureSkills GDPR - Discover the Smart Solution
SureSkills GDPR - Discover the Smart Solution
 
Data Leadership Lessons From Black Hawk Down
Data Leadership Lessons From Black Hawk DownData Leadership Lessons From Black Hawk Down
Data Leadership Lessons From Black Hawk Down
 
Gdpr compliance. Presentation for Consulegis Lawyers network
Gdpr compliance.  Presentation  for Consulegis Lawyers networkGdpr compliance.  Presentation  for Consulegis Lawyers network
Gdpr compliance. Presentation for Consulegis Lawyers network
 
Leveraging Best Practice Methods in an Age of Digital Transformation Belfast ...
Leveraging Best Practice Methods in an Age of Digital Transformation Belfast ...Leveraging Best Practice Methods in an Age of Digital Transformation Belfast ...
Leveraging Best Practice Methods in an Age of Digital Transformation Belfast ...
 
GDPR: Requirements for Cloud Providers
GDPR: Requirements for Cloud ProvidersGDPR: Requirements for Cloud Providers
GDPR: Requirements for Cloud Providers
 
GDPR in practice
GDPR in practiceGDPR in practice
GDPR in practice
 
EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer
 
Preparing for EU GDPR
Preparing for EU GDPRPreparing for EU GDPR
Preparing for EU GDPR
 
GDPR and technology - details matter
GDPR and technology - details matterGDPR and technology - details matter
GDPR and technology - details matter
 
What does the Proposed EU General Data Protection Regulation (GDPR) mean for ...
What does the Proposed EU General Data Protection Regulation (GDPR) mean for ...What does the Proposed EU General Data Protection Regulation (GDPR) mean for ...
What does the Proposed EU General Data Protection Regulation (GDPR) mean for ...
 
How JCI Prepared a Data Governance Program for Big Data & MDG on HANA
How JCI Prepared a Data Governance Program for Big Data & MDG on HANAHow JCI Prepared a Data Governance Program for Big Data & MDG on HANA
How JCI Prepared a Data Governance Program for Big Data & MDG on HANA
 

Similar a GDPR: Is Your Organization Ready for the General Data Protection Regulation?

How to turn GDPR into a Strategic Advantage using Connected Data
How to turn GDPR into a Strategic Advantage using Connected DataHow to turn GDPR into a Strategic Advantage using Connected Data
How to turn GDPR into a Strategic Advantage using Connected Data
Neo4j
 

Similar a GDPR: Is Your Organization Ready for the General Data Protection Regulation? (20)

How to turn GDPR into a Strategic Advantage using Connected Data
How to turn GDPR into a Strategic Advantage using Connected DataHow to turn GDPR into a Strategic Advantage using Connected Data
How to turn GDPR into a Strategic Advantage using Connected Data
 
General Data Protection Regulation (GDPR) Implications for Canadian Firms
General Data Protection Regulation (GDPR) Implications for Canadian FirmsGeneral Data Protection Regulation (GDPR) Implications for Canadian Firms
General Data Protection Regulation (GDPR) Implications for Canadian Firms
 
Using GDPR to Transform Customer Experience
Using GDPR to Transform Customer ExperienceUsing GDPR to Transform Customer Experience
Using GDPR to Transform Customer Experience
 
The GDPR Most Wanted: The Marketer and Analyst's Role in Compliance
The GDPR Most Wanted: The Marketer and Analyst's Role in ComplianceThe GDPR Most Wanted: The Marketer and Analyst's Role in Compliance
The GDPR Most Wanted: The Marketer and Analyst's Role in Compliance
 
Top 10 GDPR solution providers 2020
Top 10 GDPR solution providers 2020Top 10 GDPR solution providers 2020
Top 10 GDPR solution providers 2020
 
GDPR Compliance with Microsoft 365
GDPR Compliance with Microsoft 365 GDPR Compliance with Microsoft 365
GDPR Compliance with Microsoft 365
 
GDPR - what you need to know
GDPR -  what you need to know GDPR -  what you need to know
GDPR - what you need to know
 
Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...
Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...
Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...
 
DevOps vs GDPR: How to Comply and Stay Agile
DevOps vs GDPR: How to Comply and Stay AgileDevOps vs GDPR: How to Comply and Stay Agile
DevOps vs GDPR: How to Comply and Stay Agile
 
GDPR Learning Lab: Gartner Data & Analytics 2018 Slides
GDPR Learning Lab: Gartner Data & Analytics 2018 Slides GDPR Learning Lab: Gartner Data & Analytics 2018 Slides
GDPR Learning Lab: Gartner Data & Analytics 2018 Slides
 
CWIN17 telford gdpr – threat, overhead or opportunity - doug davidson
CWIN17 telford   gdpr – threat, overhead or opportunity - doug davidsonCWIN17 telford   gdpr – threat, overhead or opportunity - doug davidson
CWIN17 telford gdpr – threat, overhead or opportunity - doug davidson
 
What is GDPR Data Flow Mapping
What is GDPR Data Flow MappingWhat is GDPR Data Flow Mapping
What is GDPR Data Flow Mapping
 
GDPR: Where should you be right now? - Dennis Slattery, EDM Works
GDPR: Where should you be right now? - Dennis Slattery, EDM WorksGDPR: Where should you be right now? - Dennis Slattery, EDM Works
GDPR: Where should you be right now? - Dennis Slattery, EDM Works
 
Is your business GDPR ready?
Is your business GDPR ready?Is your business GDPR ready?
Is your business GDPR ready?
 
Bridging the Gap Between Privacy and Retention
Bridging the Gap Between Privacy and RetentionBridging the Gap Between Privacy and Retention
Bridging the Gap Between Privacy and Retention
 
GDPR and Data Quality - A Service Objects webinar
GDPR and Data Quality - A Service Objects webinarGDPR and Data Quality - A Service Objects webinar
GDPR and Data Quality - A Service Objects webinar
 
Big Data LDN 2017: Applied AI for GDPR
Big Data LDN 2017: Applied AI for GDPRBig Data LDN 2017: Applied AI for GDPR
Big Data LDN 2017: Applied AI for GDPR
 
IAB Europe's GDPR Compliance Primer
IAB Europe's GDPR Compliance PrimerIAB Europe's GDPR Compliance Primer
IAB Europe's GDPR Compliance Primer
 
Data Privacy and Security in UAE.pptx
Data Privacy and Security in UAE.pptxData Privacy and Security in UAE.pptx
Data Privacy and Security in UAE.pptx
 
Data privacy and security in uae
Data privacy and security in uaeData privacy and security in uae
Data privacy and security in uae
 

Más de DATUM LLC

Más de DATUM LLC (12)

The Merger is Happening, Now What Do We Do?
The Merger is Happening, Now What Do We Do?The Merger is Happening, Now What Do We Do?
The Merger is Happening, Now What Do We Do?
 
DGIQ 2018 Presentation: How to be successful in the post GDPR landscape – bui...
DGIQ 2018 Presentation: How to be successful in the post GDPR landscape – bui...DGIQ 2018 Presentation: How to be successful in the post GDPR landscape – bui...
DGIQ 2018 Presentation: How to be successful in the post GDPR landscape – bui...
 
DGIQ 2018 Presentation: A Lawyer, a Salesperson and the Operations Guy Walk ...
DGIQ 2018 Presentation:  A Lawyer, a Salesperson and the Operations Guy Walk ...DGIQ 2018 Presentation:  A Lawyer, a Salesperson and the Operations Guy Walk ...
DGIQ 2018 Presentation: A Lawyer, a Salesperson and the Operations Guy Walk ...
 
GDPR Audit Resilience: How to Align Diverse Internal Stakeholder Needs and De...
GDPR Audit Resilience: How to Align Diverse Internal Stakeholder Needs and De...GDPR Audit Resilience: How to Align Diverse Internal Stakeholder Needs and De...
GDPR Audit Resilience: How to Align Diverse Internal Stakeholder Needs and De...
 
7 Key GDPR Requirements & the Role of Data Governance
7 Key GDPR Requirements & the Role of Data Governance7 Key GDPR Requirements & the Role of Data Governance
7 Key GDPR Requirements & the Role of Data Governance
 
Business KPIs & Data Governance: A Sweet Combination for Hershey
Business KPIs & Data Governance: A Sweet Combination for HersheyBusiness KPIs & Data Governance: A Sweet Combination for Hershey
Business KPIs & Data Governance: A Sweet Combination for Hershey
 
5 Steps to Prepare for Digital Transformation
5 Steps to Prepare for Digital Transformation5 Steps to Prepare for Digital Transformation
5 Steps to Prepare for Digital Transformation
 
5 Steps to Prepare for SAP S4HANA
5 Steps to Prepare for SAP S4HANA5 Steps to Prepare for SAP S4HANA
5 Steps to Prepare for SAP S4HANA
 
14 Shocking Digital Transformation & Digital Economy Statistics
14 Shocking Digital Transformation & Digital Economy Statistics14 Shocking Digital Transformation & Digital Economy Statistics
14 Shocking Digital Transformation & Digital Economy Statistics
 
3 Essential Steps to Deliver Information Governance Success Through Strategy ...
3 Essential Steps to Deliver Information Governance Success Through Strategy ...3 Essential Steps to Deliver Information Governance Success Through Strategy ...
3 Essential Steps to Deliver Information Governance Success Through Strategy ...
 
9 Funny Data "Fails"
9 Funny Data "Fails" 9 Funny Data "Fails"
9 Funny Data "Fails"
 
How to Build & Sustain a Data Governance Operating Model
How to Build & Sustain a Data Governance Operating Model How to Build & Sustain a Data Governance Operating Model
How to Build & Sustain a Data Governance Operating Model
 

Último

Schema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdfSchema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdf
Lars Albertsson
 
Call Girls Hsr Layout Just Call 👗 7737669865 👗 Top Class Call Girl Service Ba...
Call Girls Hsr Layout Just Call 👗 7737669865 👗 Top Class Call Girl Service Ba...Call Girls Hsr Layout Just Call 👗 7737669865 👗 Top Class Call Girl Service Ba...
Call Girls Hsr Layout Just Call 👗 7737669865 👗 Top Class Call Girl Service Ba...
amitlee9823
 
Log Analysis using OSSEC sasoasasasas.pptx
Log Analysis using OSSEC sasoasasasas.pptxLog Analysis using OSSEC sasoasasasas.pptx
Log Analysis using OSSEC sasoasasasas.pptx
JohnnyPlasten
 
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
shivangimorya083
 
Call Girls Indiranagar Just Call 👗 7737669865 👗 Top Class Call Girl Service B...
Call Girls Indiranagar Just Call 👗 7737669865 👗 Top Class Call Girl Service B...Call Girls Indiranagar Just Call 👗 7737669865 👗 Top Class Call Girl Service B...
Call Girls Indiranagar Just Call 👗 7737669865 👗 Top Class Call Girl Service B...
amitlee9823
 
Al Barsha Escorts $#$ O565212860 $#$ Escort Service In Al Barsha
Al Barsha Escorts $#$ O565212860 $#$ Escort Service In Al BarshaAl Barsha Escorts $#$ O565212860 $#$ Escort Service In Al Barsha
Al Barsha Escorts $#$ O565212860 $#$ Escort Service In Al Barsha
AroojKhan71
 
Call Girls In Shalimar Bagh ( Delhi) 9953330565 Escorts Service
Call Girls In Shalimar Bagh ( Delhi) 9953330565 Escorts ServiceCall Girls In Shalimar Bagh ( Delhi) 9953330565 Escorts Service
Call Girls In Shalimar Bagh ( Delhi) 9953330565 Escorts Service
9953056974 Low Rate Call Girls In Saket, Delhi NCR
 
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
shivangimorya083
 
CHEAP Call Girls in Saket (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
CHEAP Call Girls in Saket (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICECHEAP Call Girls in Saket (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
CHEAP Call Girls in Saket (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
9953056974 Low Rate Call Girls In Saket, Delhi NCR
 
FESE Capital Markets Fact Sheet 2024 Q1.pdf
FESE Capital Markets Fact Sheet 2024 Q1.pdfFESE Capital Markets Fact Sheet 2024 Q1.pdf
FESE Capital Markets Fact Sheet 2024 Q1.pdf
MarinCaroMartnezBerg
 

Último (20)

VidaXL dropshipping via API with DroFx.pptx
VidaXL dropshipping via API with DroFx.pptxVidaXL dropshipping via API with DroFx.pptx
VidaXL dropshipping via API with DroFx.pptx
 
Introduction-to-Machine-Learning (1).pptx
Introduction-to-Machine-Learning (1).pptxIntroduction-to-Machine-Learning (1).pptx
Introduction-to-Machine-Learning (1).pptx
 
Smarteg dropshipping via API with DroFx.pptx
Smarteg dropshipping via API with DroFx.pptxSmarteg dropshipping via API with DroFx.pptx
Smarteg dropshipping via API with DroFx.pptx
 
Invezz.com - Grow your wealth with trading signals
Invezz.com - Grow your wealth with trading signalsInvezz.com - Grow your wealth with trading signals
Invezz.com - Grow your wealth with trading signals
 
Schema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdfSchema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdf
 
100-Concepts-of-AI by Anupama Kate .pptx
100-Concepts-of-AI by Anupama Kate .pptx100-Concepts-of-AI by Anupama Kate .pptx
100-Concepts-of-AI by Anupama Kate .pptx
 
Call Girls Hsr Layout Just Call 👗 7737669865 👗 Top Class Call Girl Service Ba...
Call Girls Hsr Layout Just Call 👗 7737669865 👗 Top Class Call Girl Service Ba...Call Girls Hsr Layout Just Call 👗 7737669865 👗 Top Class Call Girl Service Ba...
Call Girls Hsr Layout Just Call 👗 7737669865 👗 Top Class Call Girl Service Ba...
 
Log Analysis using OSSEC sasoasasasas.pptx
Log Analysis using OSSEC sasoasasasas.pptxLog Analysis using OSSEC sasoasasasas.pptx
Log Analysis using OSSEC sasoasasasas.pptx
 
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
 
Call Girls Indiranagar Just Call 👗 7737669865 👗 Top Class Call Girl Service B...
Call Girls Indiranagar Just Call 👗 7737669865 👗 Top Class Call Girl Service B...Call Girls Indiranagar Just Call 👗 7737669865 👗 Top Class Call Girl Service B...
Call Girls Indiranagar Just Call 👗 7737669865 👗 Top Class Call Girl Service B...
 
Al Barsha Escorts $#$ O565212860 $#$ Escort Service In Al Barsha
Al Barsha Escorts $#$ O565212860 $#$ Escort Service In Al BarshaAl Barsha Escorts $#$ O565212860 $#$ Escort Service In Al Barsha
Al Barsha Escorts $#$ O565212860 $#$ Escort Service In Al Barsha
 
Carero dropshipping via API with DroFx.pptx
Carero dropshipping via API with DroFx.pptxCarero dropshipping via API with DroFx.pptx
Carero dropshipping via API with DroFx.pptx
 
Call Girls In Shalimar Bagh ( Delhi) 9953330565 Escorts Service
Call Girls In Shalimar Bagh ( Delhi) 9953330565 Escorts ServiceCall Girls In Shalimar Bagh ( Delhi) 9953330565 Escorts Service
Call Girls In Shalimar Bagh ( Delhi) 9953330565 Escorts Service
 
Zuja dropshipping via API with DroFx.pptx
Zuja dropshipping via API with DroFx.pptxZuja dropshipping via API with DroFx.pptx
Zuja dropshipping via API with DroFx.pptx
 
Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
Best VIP Call Girls Noida Sector 39 Call Me: 8448380779Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
 
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
 
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdfMarket Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
 
Edukaciniai dropshipping via API with DroFx
Edukaciniai dropshipping via API with DroFxEdukaciniai dropshipping via API with DroFx
Edukaciniai dropshipping via API with DroFx
 
CHEAP Call Girls in Saket (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
CHEAP Call Girls in Saket (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICECHEAP Call Girls in Saket (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
CHEAP Call Girls in Saket (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
 
FESE Capital Markets Fact Sheet 2024 Q1.pdf
FESE Capital Markets Fact Sheet 2024 Q1.pdfFESE Capital Markets Fact Sheet 2024 Q1.pdf
FESE Capital Markets Fact Sheet 2024 Q1.pdf
 

GDPR: Is Your Organization Ready for the General Data Protection Regulation?

  • 1. 1   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   Learning    Lab Is  Your  Organiza.on  Ready  for  the   General  Data  Protec.on  Regula.on? Jonathan  Adams,    Research  Director GDPR
  • 2. 2   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   Peter  Steiner;  New  Yorker  Magazine;  July  1993  
  • 3. 3   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   GDPR 3  Reasons  to  Care
  • 4. 4   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   1.  Reduce  Costs   Fines  up  to  4%  of  Global  Revenue   *2016  Annual  Revenues  
  • 5. 5   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   2.  Increase  Margins   GDPR  Capabili)es  support  digital  transforma)on  goals  and  drive   new  business  models:   •  Consumer   Centric  PLM     •  Supply  Chain  &   Channel   OpAmizaAon     •  Customer  360   programs    
  • 6. 6   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   3.  Grow  Revenue   Data  MoneAzaAon  &   New  Revenue  Streams   •  Sports  “Wearables”   •  Self  Iden)fica)on  at  POI   •  Cloud  Based  Services   “Trust”  with  Partners     &  Customers    
  • 7. 7   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   The  Clock  is  Ticking…  
  • 8. 8   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   Defining  GDPR   GDPR  is  a  comprehensive  set  of  privacy  regula)ons  designed  to  protect  data  for  individuals   within  the  European  Union.       ObjecAve:     •  Give  individuals  control  of  their  personal  data   •  Regulatory  consistency  across  the  EU     Impact:   •  Covers  personal  data  collected  in  EU  regardless  of  where  the  data   collector  is  located     •  All  US  based  mul)  na)onals  doing  business  with  people  in  Europe   will  be  impacted  
  • 9. 9   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   GDPR’s  Impact  on  Companies   Any  business  (foreign  or  domes)c)  engaged  with  individuals  within  the  EU       The  no)on  of  Personally  Iden)fiable  Informa)on  (PII)  is  broadly  defined:  data   that  has  the  poten&al  to  iden)fy  a  person  living  in  Europe  falls  under  the  GDPR     GDPR  applies  “horizontally”  across  the  organiza)on’s  business  components,   and  “ver)cally”  at  all  decision  making  levels.     GDPR  applies  across  the  complete  value  chain.  Organiza)ons  are  obligated  to   verify  the  compliance  of  par)es  with  which  they  do  business.  
  • 10. 10   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC  
  • 11. 11   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   GDPR  Requires  InterpretaAon   General  Data   Protec.on  Regula.on
  • 12. 12   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   GDPR  Requires  InterpretaAon   It’s  Comprehensive  &  Tightly  WriVen   •  All  personal  informa)on  regardless  of  where  it  came  from  and  how  it  is  used  is  governed     It’s  Principle  Based   •  Requires  companies  to  adopt  privacy  principles  at  the  cultural  level     It’s  Compromise  LegislaAon   •  GDPR  is  a  piece  of  what  legal  scholars  call  compromise  legisla)on:  a  legisla)ve  text  that  tries  to   sa)sfy  two  starkly  opposed  sides  of  the  data  protec)on  debate     When  InterpretaAon  is  Required,  Best  PracAces  are  CriAcal  
  • 13. 13   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   The  Governance  Challenge        Crea)ng  transparent  &              defensible  best  prac)ces     that  address  “principles”  
  • 14. 14   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   Risk   Management   Accountability   Org  Design   Data  Lineage   Process   Alignment   PII  Cataloging   Interna)onal   Partner   Management   Metadata     Data   Governance   Data   Architecture   Data   Opera)ons   Data  Discovery   Best  Prac)ces   Security   Data   Management   Privacy   Cloud  Services   IoT   The  Governance  Challenge   Mapping  the  best  prac)ces  to  observable  &  measurable     ac)vi)es  across  many  func)onal  areas  
  • 15. 15   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   The  4  Core  CapabiliAes   GDPR  requirements  can  be  simplified  by   organizing  around  four  core  capability  areas:     Consulta)on   &  Repor)ng   •  Cer)fica)on   •  Risk  Management   •  Organiza)onal   Alignment   •  Data  by  Design   •  Risk  Management   •  Communica)on   •  Remedia)on   •  People   •  Partners   •  Regulators   •  OrganizaAon  
  • 16. 16   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   1 2 3 4 Forget   Art.  17   Quaran)ne   Art.  18   Package     Art.  20   Fix   Art.  16   Cer)fica)on   Art.  42   Risk   Management   Art.  32   Processor   Compliance   Art.  28   Data   Management   Art.  6,7,9,14   Interna)onal   Art.  27,  44,45,46,47,48,49   Best  Prac)ces   Art.  25,40,42,41,43   Risk   Management   Art.  32,35,36   Accountability   Art.  37,38,39   Consulta)on   Art  36   Best  Prac)ces   Art  40   Consent   Art.  6,7,8,9,10   No)fica)on   Art.  12   Mapping  to  the  RegulaAon  
  • 17. 17   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   Datum's   Advisory   Services   group   leverages   our   proprietary  data  governance  model    Capture  Key   governance   components   and   structure   the   governance  opera)ng  model  to  transparently  and   defensibly  achieve  GDPR  compliance   DATUM’s     InformaAon  Value  Management®   How  DATUM  Can  Help   DATUM’s  GDPR  Readiness     Assessment  &  Roadmap   DATUM’s   Informa)on   Value   Management®   sojware   plakorm   allows   you   to   implement   this   governance   opera)ng   model   throughout   the   organiza)on   by   discovering,   understanding   and   connec)ng  the  cri)cal  data  to  important  business  value  drivers.   Informa)on   Value   Management®   also   comes   with   a   library   of   resources  that  help  jump  start  customers’  GDPR  ini)a)ves.    
  • 18. 18   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   Where  to  Start:  3  QuesAons   3 2 Can  I  catalog  my  GDPR  related  data?   Do  I  know  where  and  how  it  is  used?   Do  I  have  a  governance  process  with   observable  and  measurable  controls?   1
  • 19. 19   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   1.  Can  I  Catalog  my  GDPR  Related  Data?    
  • 20. 20   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   Knowing  what  PII  you  have  and  how  it  is  organized  is  founda)onal      Can  I  catalog  my  GDPR        related  data?   •  If  asked  what  is  GDPR  PII,  can  a   data  dic)onary  be  produced?     •  Is  it  detailed  enough  to  apply   governance?      If  the  Answer  is  No…   •  If  I  you  don’t  know  where  it  is,  you   I  can’t  apply  any  sort  of   governance   1.  Can  I  Catalog  my  GDPR  Related  Data?    
  • 21. 21   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   Who  is  in  charge?  Why  is  this  informaAon  valuable?  And  what  is  the  impact  of  a  privacy  breach?   2.  Where  Is  It  and  How  Is  It  Used  
  • 22. 22   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   2    Do  I  know  where,  how        and  who  uses  it?     •  What  business  processes  use  GDPR   PII?     •  Why  do  they  need  PII?     •  How  cri)cal  is  the  PII?      Accountability  is  Key   •  I  cannot  fix  things  if  no  one  is   accountable!     •  Understanding  value  and  impact   priori)zes  resources   2.  Where  Is  It  and  How  Is  It  Used  
  • 23. 23   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   3.  Do  I  have  a  Governance  Process?   2    Do  I  have  a  governance        process  with  observable        and  measurable  controls?      Demonstrable  due        diligence      Governance  from  policy  to        data  mi)gates  risk   How  do  I  make  engaging  with  regulators  a  posi)ve   experience?  
  • 24. 24   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   The  IVM  demonstraAon  drills  down  on  these  three  foundaAonal   uses  cases   Can  I  catalog  my  GDPR  related   data?   •  If  asked  what  is  GDPR  PII,  can  a   data  dic)onary  be  produced?   •  Is  it  detailed  enough  to  apply   governance?   Do  I  know  where,  how  and  by   whom  it  is  used?   •  What  business  processes  use  GDPR   PII?   •  Why  do  they  need  PII?   •  How  cri)cal  is  the  PII?   Do  I  have  a  governance  process   with  observable  and  measurable   controls?   It  all  starts  here…   If  I  do  not  know  where  it  is  I  cannot   apply  any  sort  of  governance   Accountability  is  key   •  I  cannot  fix  things  if  no  one  is   accountable!   •  Understanding  value  and  impact   priori)zes  resources   Demonstrable  due  diligence   Governance  from  policy  to  data   mi)gates  risk   3 2 1
  • 25. 25   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   Datum's   Advisory   Services   group   leverages   our   proprietary  data  governance  model    Capture  Key   governance   components   and   structure   the   governance  opera)ng  model  to  transparently  and   defensibly  achieve  GDPR  compliance   DATUM’s     InformaAon  Value  Management®   How  DATUM  Can  Help   DATUM’s  GDPR  Readiness     Assessment  &  Roadmap   DATUM’s   Informa)on   Value   Management®   sojware   plakorm   allows   you   to   implement   this   governance   opera)ng   model   throughout   the   organiza)on   by   discovering,   understanding   and   connec)ng  the  cri)cal  data  to  important  business  value  drivers.   Informa)on   Value   Management®   also   comes   with   a   library   of   resources  that  help  jump  start  customers’  GDPR  ini)a)ves.    
  • 26. 26   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC   Right  Data.  Right  Decisions.  Right  Now.       •  Discover  and  understand  the  data  available  to  your  company     •  Connect  that  data  to  the  most  important  business  value  drivers  -­‐  opera)ons,  analy)cs   and  compliance   •  Clearly  measure  the  impact  data  has  on  corporate  ini)a)ves  
  • 27. 27   Confiden)al  and  Proprietary.  All  rights  reserved  Copyright©  2016.  DATUM  LLC  

Notas del editor

  1. How the 4% Revenue fine would impact some of the USA’s largest companies
  2. How the 4% Revenue fine would impact some of the USA’s largest companies
  3. Between now and May of 2018, companies must understand where they have compliance risk, execute a plan to address that risk, and organize risk management to engage effectively with regulators.
  4. Who’s in charge of what? Offensive line is responsible for identifying what the defense is doing in order to protect the quarterback and move the ball down the field. Each person has a different job. Why is this information valuable? I.E. I need to watch the linebacker because if I don’t know what he’s doing, our play could be jeopardized. What’s the impact of a privacy breach? – If I let this linebacker through, our quarterback could be sacked.