Clifford Gouldson Lawyers

New EU data rules may impact Australian businesses

Print Version

25/05/2018

Have you noticed your inbox filling up recently with emails regarding updates to privacy policies? We certainly have, and there is a good explanation for it.

The European Union (EU) General Data Protection Regulation (GDPR) contains new and heavier data protection requirements that will apply from 25 May 2018.

The GDPR is primarily in favour of the user or individual whose personal data is being captured and processed. It provides a responsibility on the business/organisation to be more transparent and clear about the collection and processing of data.
 
If you are a business that is involved with individuals or other businesses based out of the EU, then you may have to comply with these new data protection requirements, even if you already comply with the Australian Privacy Act 1988 (Cth) and its Australian Privacy Principles (knowns as the APPs).
 
If you have a business or organisation that:

  1. has an establishment in the EU, or
  2. does not have an establishment in the EU, but offer goods and services or monitor the behaviour of individuals in the EU;
  3. then you need to comply with the GDPR.

The new data protection requirements of the GDPR include (but are not limited to):

  1. a new definition of what constitutes ‘consent;
  2. the transfer of personal data overseas (such as outsourced cloud based storage services);
  3. requirement to undertake compulsory data protection impact assessments; and
  4. enhancement to an individual’s right to request:
  • erasure of their personal data;
  • objecting to the processing of their personal data; and
  • receive their personal data provided to the business/organisation.

The penalties for breaches of the GDPR have been heightened with administrative fines including the greater of up to 20 million (Euro) or 4% of the annual worldwide turnover.

Make sure that you are compliant today and contact our Commerical + Property or Intellectual Property sections for advice on your Privacy Policy.

LATEST NEWS/EVENTS

New proposal on the table - Director Identification Numbers - 21/03/2019

As part of it's efforts to combat illegal "phoenix" activity, the Federal Government has proposed new legislation that will result in all company directors receiving a unique identification number.... read on

Flexible Working Requests: You can’t say No! - 19/03/2019

Due to recent changes to the Fair Work legislation, it is no longer possible for an employer to simply say “No”, when an employee asks for flexible working arrangements.... read on

Combustible Cladding - first deadline approaching - 15/03/2019

The first deadline in the State Government’s combustible cladding review process is 29 March 2019. ... read on

Read all news/events

Site Developed by FAQ Interactive