GDPR, what does it mean for your SME?

GDPR or AVG stands for General Data Protection Regulation, or General Data Protection Regulation (GDPR). Companies and also government agencies need to make sure they are GDPR compliant. From your business to the website. Because the GDPR impacts just about every SME, gdpr guidance is happy to help.

Is there a legal framework around data protection?

Every business does collect personal data. The data for example on your website form , email marketing , ticket system and you name it. To properly protect data, Europe imposes obligations on companies that collect and process data and gives rights to individuals who share their personal data with these companies. Therefore, SMEs must have control over how and to whom their data is evrved.

Is the GDPR NEEDED for my business?

The GDPR or AVG is official European legislation that applies to all organizations that collect and process data of European citizens. So even if you have a one-man business or association.

What is included in personal data?

Any information by which a natural person can be identified. This includes names, addresses, phone numbers, e-mail addresses, photographs, customer numbers, IP addresses, as well as genetic and biological data.

What if my company is not GDPR compliant?

You risk fines and sacnties as high as 20 million euros or 4% of your turnover. Checks will be made on each company.

What does the GDPR entail?

Much vof the GDPR can be found in the Belgian Privacy Act.
These points are very important:

  • Transparency
  • Accountability
  • Data portability
  • Privacy by design
  • Data security

Unfortunately, there is no standard roadmap or checklist that you can check off whereby you can be sure your data processing is in compliance with the new regulations. You can always use the ISO 27001 Checklist

What do I need to do to ensure my company is GDPR compliant?

Gdpr guidance has built a pathway with helpful guidelines for striving toward gdpr compliancy.

  • Training
  • Privacy audit
  • Creation of the data register
  • IT audit
  • Check
  • Communications
  • Evaluation
  • Follow up

Is your SME ready for GDPR regulations?

Plan your GDPR journey today to get your business ready for the GDPR. Or feel free to ask your question via our contact form. At gdprbegeleiding, we know the regulations very well and have certified DPOs (Data Protection Officers) on the team.

Delen:

Meer berichten

nis2 incident aangeven

To report an NIS2 incident

With the introduction of the NIS2 directive in the EU, cyber incident reporting will become mandatory for many companies. This means that

Partners

©DPO Associates Alle rechten voorbehouden. Privacy verklaringCookie verklaring | Algemene voorwaarden