GDPR For Dummies
- 7h 24m
- Suzanne Dibble
- John Wiley & Sons (US)
- 2020
Don’t be afraid of the GDPR wolf!
How can your business easily comply with the new data protection and privacy laws and avoid fines of up to $27M? GDPR For Dummies sets out in simple steps how small business owners can comply with the complex General Data Protection Regulations (GDPR). These regulations apply to all businesses established in the EU and to businesses established outside of the EU insofar as they process personal data about people within the EU.
Inside, you’ll discover how GDPR applies to your business in the context of marketing, employment, providing your services, and using service providers. Learn how to avoid fines, regulatory investigations, customer complaints, and brand damage, while gaining a competitive advantage and increasing customer loyalty by putting privacy at the heart of your business.
- Find out what constitutes personal data and special category data
- Gain consent for online and offline marketing
- Put your Privacy Policy in place
- Report a data breach before being fined
79% of U.S. businesses haven’t figured out how they’ll report breaches in a timely fashion, provide customers the right to be forgotten, conduct privacy impact assessments, and more. If you are one of those businesses that hasn't put a plan in place, then GDPR For Dummies is for you.
About the Author
Suzanne Dibble is a business lawyer who has advised huge multi-national corporations, private equity-backed enterprises, and household names. Since 2010 she has focused on small businesses, combining her knowledge of large organizations with a deep appreciation for entrepreneurship, especially online businesses, to provide practical, relevant advice. See more at suzannedibble.com
In this Book
-
Introduction
-
Grasping the Fundamentals of GDPR and Data Protection
-
Key Changes Introduced by GDPR
-
Digging In to Data: What’s Personal, What’s Sensitive, and How It’s Processed
-
The Six Data Protection Principles
-
Data Controllers and Data Processors
-
Transfers of Data Outside of the EEA
-
Building Your Data Inventory
-
Penning a Privacy Notice
-
Cookie Policy
-
Drafting Data Processing and Data Sharing Agreements
-
Writing Opt-In Wording
-
Writing a Legitimate Interests Assessment Form
-
Writing Other Documents
-
Data Subject Rights
-
Data Protection by Design and by Default
-
Data Security
-
Data Breaches and Reporting Obligations
-
GDPR and the Workplace
-
Keeping Your Marketing GDPR-Compliant
-
Children, Charities, and Associations
-
Supervisory Authorities, Remedies, Liabilities, and Penalties
-
Ten GDPR Resources
-
Ten Must-Have Skills for the DPO
-
Ten Ways to Train Employees to Be Good Stewards of Data