Monitor this situation.
Unsubscribe anytime.
[SITUATION] · [ACTIVE] · [BUSINESS]
2 clusters · 5 sources · 7 days · First seen · Last updated
GDPR regulatory compliance and enforcement
Overview
The General Data Protection Regulation (GDPR) imposes significant financial risks on various entities, including multinational corporations, public administrations, and state-owned enterprises. Under Article 83, a two-tier penalty system allows for fines of up to €10 million or 2% of total annual global turnover for less severe violations, while more serious infractions can reach €20 million or 4% of turnover. Regulatory authorities determine these amounts based on factors such as the gravity, duration, and intentionality of the violation.
Compliance requirements extend to the continuous monitoring of external data processors under Article 28. Recent enforcement actions demonstrate the consequences of inadequate oversight, including a €350,000 fine for Vodafone in Greece and a €15 million fine in Germany for insufficient monitoring of partner agencies. Additionally, managing data access within large volumes of unstructured data remains a significant governance challenge, as existing security tools often struggle to remediate vulnerabilities related to outdated or overly broad access permissions.
Entities
GDPR · Vodafone · Garante per la protezione dei dati personali
Timeline
-
6 days ago
[TECHNOLOGY] 3 sourcesGDPR compliance requires continuous monitoring of data processorsCompanies face rising legal risks and governance challenges regarding GDPR compliance, specifically in monitoring external data processors and managing complex data access permissions.
-
12 days ago
[BUSINESS] 2 sourcesGDPR privacy sanctions and regulatory compliance risksGDPR privacy sanctions can reach up to €20 million or 4% of global turnover, depending on the severity and nature of the violation, affecting various types of organizations.
Sources
chemistry.utoronto.ca · dataprotectionlaw.it · datenschutzkanzlei.de · it-daily.net · persoblogger.de