IMPLEMENTATION OF MANAGEMENT STANDARDS
Your rating 0 from 0 votes


General Data Protection Regulation (GDPR)


Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC
 
In May, 2016 Regulation (EU) 2016/679 on the protection of individuals with regard to the processing of their personal data and on the free movement of this data (General Data Protection Regulation) entered into force. It introduces a common legal framework on the legislation requirements in the EU for the protection of personal information. In relation to the globalization of economic activity and the digital economy, GDPR, which took effect on 25 May 2018, aims to guarantee the strict protection of personal information. It regulates data processing as part of the economic activity of individuals, enterprises or organization in the EU and in third countries, whenever personal data of European citizens or residents is concerned.
GDPR states the obligations of administrators who process personal data with regard to the protection of data integrity and confidentiality. These requirements need to be taken into account when envisioning and planning any commercial activity. Organizations who are administrators of personal data (data controllers) and third-party organizations who process personal data on their behalf (data processors) must be compliant with GDPR requirements to avoid administrative penalties that are provided for in the regulation. They have to ensure technical and organizational means to protect personal information of individuals (data subjects) and document the organization's compliance so that it can be proven if necessary.
Main principles to ensure the protection of personal data:
  • Integrity and confidentiality: the necessary security measures have to be taken when processing personal data, so that confidentiality and integrity àrå protected;
  • Lawfulness and transparency: data have to be processed in a lawful manner and in a way transparent to the data subject;
  • Limited purposes: data must be processed only for the purposes that it was collected for in the first place, and with the data subject's explicit consent;
  • Minimizing the collected data: only the minimum amount of data necessary for the stated purposes must be processed;
  • Time limitations: personal data can only be stored and processed for the duration of existence of the purpose for storing and processing it in the first place.
 

General Data Protection Regulation (GDPR)

News
27
02.24
Amendment 1: Climate action changes
Late last week, the International Organization for Standardization (ISO) announc...
05
02.24
Differences between NIS and NIS 2 directives
The European Union's cybersecurity rules, introduced in 2016, have been upda...
Accents
10
08.23
Standards for the protection of automotive security
The automotive industry has changed rapidly in recent years with the advent ...
28
07.23
WLA Security Control Standard - security controls in the lottery industry
The WLA Security Control Standard (WLA SCS) is an information security managemen...

Implementation of management standards

CONSEJO EOOD is a consulting company formed by a team of consultants with over 15 years of experience in management systems in the field of international standards. The focus of the company is the provision of consulting services in the development and implementation of management systems that meet the requirements of international standards for quality, the environment, safe working conditions, information security, good production practices based on international standards: ISO 9001, ISO 14001, ISO 45001, ISO 22000, ISO 27001, IFS Food, HACCP and others.

The CONSEHO team has participated in the realization of projects in all branches of the economy. The projects implemented by the CONSEHO team are over 1000, in the fields of production and design, construction, trade, information and communication technologies, transport and forwarding, hotel and restaurant industry, special production, energy, design, food industry, services, etc. The company has established a strict procedure for monitoring the compliance with the agreed requirements with the clients, both the terms of the contracts and the quality of service performance. The established working style of the company consists of developing real management systems together with our customers, on the basis of conducting multiple trainings and providing full assistance in the implementation process. Through its approach to work, CONSECO ensures and guarantees trouble-free certification of the built systems in extremely short terms.

See more
Partners