As you may know, the EU's General Data Protection Regulation (GDPR) will be in full effect on May 25, 2018. As we discussed in a previous article, the aims of this regulation are to protect the fundamental rights and freedoms of natural persons and to also ensure their right to protection of personal data as well as the free movement of said data.
The date may seem far away, but it gives just enough time for your organization to make the proper changes in the IT framework to comply. Gartner predicts that by the end of 2018, more than 50 percent of companies affected by the GDPR will not be in full compliance with its requirements. In order to subvert hefty fines and tarnished reputations - organizations should prepare for the regulation now.
According to Netskope Cloud Report, the average European enterprise is using 608 cloud apps. Going forward, it will be imperative to know which apps meet GDPR security standards and take measures to exclude the applications that do not. GDPR requirements include greater data access and deletion rules, risk assessment procedures, gives individuals the right to alter their data.
An Enterprise Architecture Management tool such as LeanIX will help you uncover vulnerabilities and systematically follow up on their correction. Visualization tools such as the LeanIX Heat Map can provide information on business-critical consequences for your company in the event of an application failure or hacking attack.
After the GDPR is in place, it will be imperative to display how you process personal data, how you handle risks and what measures for damage limitation you have implemented. The latter is especially relevant when you conduct a DPIA - which the GDPR requires for every implementation of a new system that uses personal data. The LeanIX Inventory View function demonstrates your GDPR compliance by providing a quick and clear overview in table form of all applications, interfaces, data objects and technologies in your IT landscape.
As you can see, compliance with the GDPR will take measurable time, expertise, and implement many changes in the IT landscape. Is your company ready for these changes?