The EU General Data Protection Regulation (GDPR) A Practical Guide

This book provides expert advice on the practical implementation of the European Union’s General Data Protection Regulation (GDPR) and systematically analyses its various provisions. Examples, tables, a checklist etc. showcase the practical consequences o

  • PDF / 4,584,541 Bytes
  • 385 Pages / 439.42 x 683.15 pts Page_size
  • 133 Downloads / 604 Views

DOWNLOAD

REPORT


EU General Data Protection Regulation (GDPR) A Practical Guide

The EU General Data Protection Regulation (GDPR)

Paul Voigt • Axel von dem Bussche

The EU General Data Protection Regulation (GDPR) A Practical Guide

Paul Voigt Taylor Wessing Berlin, Germany

Axel von dem Bussche Taylor Wessing Hamburg, Germany

ISBN 978-3-319-57958-0 ISBN 978-3-319-57959-7 DOI 10.1007/978-3-319-57959-7

(eBook)

Library of Congress Control Number: 2017942999 # Springer International Publishing AG 2017 This work is subject to copyright. All rights are reserved by the Publisher, whether the whole or part of the material is concerned, specifically the rights of translation, reprinting, reuse of illustrations, recitation, broadcasting, reproduction on microfilms or in any other physical way, and transmission or information storage and retrieval, electronic adaptation, computer software, or by similar or dissimilar methodology now known or hereafter developed. The use of general descriptive names, registered names, trademarks, service marks, etc. in this publication does not imply, even in the absence of a specific statement, that such names are exempt from the relevant protective laws and regulations and therefore free for general use. The publisher, the authors and the editors are safe to assume that the advice and information in this book are believed to be true and accurate at the date of publication. Neither the publisher nor the authors or the editors give a warranty, express or implied, with respect to the material contained herein or for any errors or omissions that may have been made. The publisher remains neutral with regard to jurisdictional claims in published maps and institutional affiliations. Printed on acid-free paper This Springer imprint is published by Springer Nature The registered company is Springer International Publishing AG The registered company address is: Gewerbestrasse 11, 6330 Cham, Switzerland

Contents

1

Introduction and ‘Checklist’ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1.1 Legislative Purpose and Previous Legal Provisions . . . . . . . . . . 1.1.1 The Data Protection Directive . . . . . . . . . . . . . . . . . . . 1.1.2 The General Data Protection Regulation . . . . . . . . . . . 1.2 Checklist: Most Important Data Protection Obligations . . . . . . . 1.2.1 Organisational Requirements . . . . . . . . . . . . . . . . . . . 1.2.2 Lawfulness of the Processing Activities . . . . . . . . . . . . References . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

1 1 1 2 3 3 5 7

2

Scope of Application of the GDPR . . . . . . . . . . . . . . . . . . . . . . . . 2.1 In Which Case Does the Regulation Apply? . . . . . . . . . . . . . . 2.1.1 ‘Processing’ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2.1.2 ‘Personal Data’ . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2.1.3 Exemptions from the Scope of Application . . . . . . . . 2.2 To Whom Does the Regulation Apply? . . . . . . . . . . . . . . . . . 2.2.1 ‘Controller’ . . . . .