The document discusses the General Data Protection Regulation (GDPR), the new EU data privacy law taking effect May 25, 2018. It defines key terms related to personal data and outlines major changes under GDPR, including higher fines of up to 4% of global revenue, expanded territorial scope, strengthened individual rights around consent, access and erasure, mandatory breach reporting, privacy by design requirements, and mandatory appointment of data protection officers for some organizations. It also discusses how legal, technology and data functions will need to adapt, and provides best practices for organizations to assess their compliance.
Related topics: