New EU data rules may impact Australian businesses
Have you noticed your inbox filling up recently with emails regarding updates to privacy policies? We certainly have, and there is a good explanation for it.The European Union (EU) General Data Protection Regulation (GDPR) contains new and heavier data protection requirements that will apply from 25 May 2018.
The GDPR is primarily in favour of the user or individual whose personal data is being captured and processed. It provides a responsibility on the business/organisation to be more transparent and clear about the collection and processing of data.
If you are a business that is involved with individuals or other businesses based out of the EU, then you may have to comply with these new data protection requirements, even if you already comply with the Australian Privacy Act 1988 (Cth) and its Australian Privacy Principles (knowns as the APPs).
If you have a business or organisation that:
- has an establishment in the EU, or
- does not have an establishment in the EU, but offer goods and services or monitor the behaviour of individuals in the EU;
- then you need to comply with the GDPR.
The new data protection requirements of the GDPR include (but are not limited to):
- a new definition of what constitutes ‘consent;
- the transfer of personal data overseas (such as outsourced cloud based storage services);
- requirement to undertake compulsory data protection impact assessments; and
- enhancement to an individual’s right to request:
- erasure of their personal data;
- objecting to the processing of their personal data; and
- receive their personal data provided to the business/organisation.
The Fair Work Regulations 2009 (Cth) were amended on 18 December 2018 with the aim of preventing this ‘double dipping’ by allowing employers to offset certain NES entitlements by paying casual employees a casual loading. ... read on
With Christmas only weeks away, it’s common for businesses to celebrate the end of the year through work functions and Christmas parties. Because the celebrations occur outside the usual work environment, it can be difficult to find the balance between setting the standard of what’s expected of employees and allowing everyone to have fun.... read on
Cybersecurity is the protection of internet-connected systems, including hardware, software and data, from digital attack. In a computing context, security comprises cybersecurity and physical security – both are used by enterprises to protect against unauthorized access to data centres, computerized systems, and computing devices over the internet of things (IoT).... read on