Protection of customer data: the new GDPR regulation

As of May 2018, as an entrepreneur you will be dealing with the General Data Protection Regulation (GDPR). This regulation stipulates that every entrepreneur is responsible for the data of their customers.

Prepare in time, as fines will be high. Everything you need to know about GDPR, whether it applies to you, and how to handle customer data, you can read here.

Autoriteit Persoonsgegevens
De wereld van de Ondernemer

What is GDPR?

As of 25 May 2018, the General Data Protection Regulation (GDPR) applies throughout Europe. In Dutch, this is called: the General Data Protection Regulation (GDPR). This was created to protect consumers against data misuse.

The GDPR makes it mandatory to record the processing of personal data. From now on, the same privacy legislation applies throughout the European Union. The GDPR therefore replaces the Personal Data Protection Act (Wbp).

Although it may often not be intentional, or even not a direct fault of your own, if you leak sensitive, personal data, you as the administrator are still responsible for it.

Why protect customer data?

• Moral obligation to your customers
• A leak or hack is bad for your reputation
• Customers are increasingly hesitant to share data
• Penalties are high

Reporting Obligation

If, despite all your efforts to secure data, something goes wrong and personal data is exposed, you have been required to report this since 1 January 2016. According to the Data Breach Notification Obligation, you must report such an incident within 72 hours, otherwise fines may result. The DDMA has drawn up a guide containing 3 steps and 5 tips on how to properly report a leak.

What can MSA mean in this!

• MSA works according to strict procedures (ISO-standardized) with third-party data

• MSA has its own secured sftp servers

• MSA can provide you with extensive information on the safe digital submission of data files

• Data files are automatically deleted from all MSA systems after processing, within the stipulated timeframes

• Procedures regarding data breaches are described in our ISO manuals

• Feel free to ask about the possibilities within MSA