18
GDPR and Logistics 38 days and counting Lynn Parnell 16 th April 2018

GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

  • Upload
    others

  • View
    1

  • Download
    0

Embed Size (px)

Citation preview

Page 1: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

GDPRandLogistics 38daysandcounting

Lynn Parnell 16th April 2018

Page 2: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

LynnParnellIndependentLogisticsConsultantSpecialistinLogisticsITprojects–software&hardwareInLogisticssince1990,startingwitha3PLinoperationalrolesSpecialistinITinLogisticssince1991EstablishedLogisticsPartnersin2000Selection,Design,Implementation,AuditNotalegalspecialistButGDPRimpactsalotofwhatIdoTransaidAmbassador

Page 3: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

QuestionsWhohasheardaboutGDPR?WhothinksGDPRisrelevanttotheirjob?WhohashadspecifictrainingaboutGDPR?WhoseorganisationhasnewproceduresforGDPR?

Page 4: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

WhatisGDPR?TheEUGeneralDataProtectionRegulation(2016/679)ReplacesUKDataProtectionAct1998Effective25thMay2018“Thebiggestchangetodataprotectionlawforageneration”Finesupto£17millionor4%ofglobalturnover

Page 5: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

ICOView“Ifyourorganisationcan’tdemonstratethatgooddataprotectionisacornerstoneofyourbusinesspolicyandpractices,you’releavingyourorganisationopentoenforcementactionthatcandamagebothpublic

reputationandbankbalance.Butthere’sacarrothereaswellasastick:getdata

protectionright,andyoucanseearealbusinessbenefit.”InformationCommissionerElizabethDenham

Page 6: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

MythsGDPRisonlyaboutemailmarketingGDPRwillnotberelevantafterBREXITIoutsourceoperationssodonotneedtoworryItisonlyaboutdataoncomputersOnlyaffectsdataheldintheEU

Page 7: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

KeyRequirementsPrivacybydesignPrivacybydefaultDataProtectionOfficersDataPrivacyimpactassessmentDataControllersandDataProcessorsPersonalDatashallbe

CollectedLawfullySpecificpurposeAdequaterelevantandlimitedAccurateanduptodateNolongerthannecessaryfororiginalpurposeAppropriatesecurity

Page 8: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

WhatisPersonalData?IdentifiesapersondirectlyorindirectlyExamples

NameAddressDateofBirthPassportNumberDrivinglicensenumberTelephonenumberEmailaddressIPaddressCarregistration

Thislistisnotexhaustive!

Page 9: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

DataSubjectrightsClearconsentorlegitimateuseTransparencyTobeinformedofabreachRighttobeforgottenPortabilityofdataAccesstodataRectificationofdataRestrictautomatedprocessing

Page 10: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

CompanyObligationsAccountableDemonstrateCompliance

KeepdatasecureAllowaccessFacilitateeditordelete

SafeguardsfordatatransferredtoothersIfappropriateappointDataProtectionOfficerReportDatabreachPayafeetoICO

Page 11: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

ExamplesofLogisticsUsesPersonnelrecordsDriverdetailsCustomerdetailsPickinglistsinwarehousesPODdevicesPrinteddeliverynotesonclipboardsSpreadsheetsforKPIsSigninginBooksTestdataTHISISNOTANEXHAUSTIVELIST!

Page 12: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

RealExamples

Page 13: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

IsyourOrganisationReady?🤔"😄😎🍹&😱🤯💩⏱⏳🏔👣

Page 14: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

StepstoComplianceDoyouneedaDataProtectionOfficer?IdentifyDataController/DataProcessorIdentifywhatdataisheldwhereDataProtectionImpactAssessmentComplianceplanforalldataContractsforoutsourceddataprocessorsTraining&AwarenessContinuousauditforcomplianceInfoatwww.ico.org.uk

Page 15: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

Don’tForgetNonCompliance

Fineofupto£17millionor4%ofglobalturnover

Page 16: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

SO!WhohasheardaboutGDPR?WhothinksGDPRisrelevanttotheirjob?WhothinkstheirteamneedspecifictrainingaboutGDPR?WhothinkstheirorganisationneedsnewproceduresforGDPR?WHOHASSOMEWORKTODO?38Daysandabout4hourstogo!

Page 17: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

Any Questions?

GraphiccourtesyofInterimTeam

Page 18: GDPR and Logistics 38 days and counting - Aricia · 2018-04-19 · ICO View “If your organisation can’t demonstrate that good data protection is a cornerstone of your business

Contact www.logisticspartners.co.uk [email protected]

@LogisticsPartne

LynnParnell

07771 623929