SlideShare a Scribd company logo
GDPR and Data Privacy in the EU - A
Guide for US B2B Technology
Marketers
Samantha Magee
Kevin Savage
Key Points
• Direct Marketing is possible with
the GDPR
• Opt-ins and Consent or
Notifications and Legitimate
Interest
• Other EU legislation
• Tips for B2B compliance from a
DPO perspective
$450bn
Legal Bases
Consent
Contract
Legal Obligation
Vital Interest
Public Task
Legitimate Interest
GDPR and Data Privacy in the EU - A Rhetorik Guide for B2B Technology Marketers
Myth 1 – The end of Direct Marketing
Recital 47:
The legitimate interests of a controller, or of a third party, may provide
a legal basis for processing, provided that the interests or the
fundamental rights and freedoms of the data subject are not
overriding, taking into consideration the reasonable expectations of
data subjects based on their relationship with the controller. (…)
The processing of personal data for direct marketing purposes may be
regarded as carried out for a legitimate interest.
Myth 2: Massive fines
Myth 2: Massive fines
“I have no intention of changing
our proportionate and pragmatic
approach.
Hefty fines will be reserved for
those organisations that
persistently, deliberately or
negligently flout the law.”
Liz Denham, Information Commissioner
How does this affect B2B Marketing?
Suspects
Prospects
Clients
GDPR and Data Privacy in the EU - A Rhetorik Guide for B2B Technology Marketers
UK – Privacy & Electronic Communications
Regulations 2003
• GDPR is about the PROCESSING not the PROCESS
• Email, as one form of direct marketing, is a PROCESS
• PECR gives us the OPT-IN / OPT-OUT rules
• OPT-IN is required for INDIVIDUALS, SOLE TRADERS and some
PARTNERSHIPS
• OPT-OUT is open to CORPORATE BODIES and PERSONAL CORPORATE
EMAIL users
GDPR and Data Privacy in the UK – PECR
Source – GDPR for marketers: Consent
and Legitimate Interests – page 21
Direct Marketing Association
Data Privacy around the EU
Country Legislation
Belgium The Code of Economic Law, and the Royal Decree of 4 April 2003 (advertising by email)
France Article L. 34-5 of the Code of Post and Telecommunication and Article L.121-20-5 of the
Consumption Code
Germany The German Act Against Unfair Practices 2004 (UWG) and the revised German
Telecommunications Act
Ireland The European Communities (Electronic Communications Networks and Services)
Regulations 2011 (the “2011 Regulations”)
Italy Protection of Personal Data Consolidation Act (Data Protection Code - Legislative Decree
No. 196 of 30 June 2003) & Legislative Decree nr. 69/2012
Netherlands Telecommunicatiewet
Spain Law 34/2002 on information society services and electronic commerce (LSSI)
UK The Privacy and Electronic Communications (EC Directive) Regulations 2003
Opted
out?
Y
E
S
DO NOT EMAIL
NO
In Finland, France,
Ireland, Portugal,
Sweden, UK?
NO
Opted
in?
EMAIL
Y
E
S
N
O
Y
E
S
STARTHERE
GDPR and Data Privacy in the EU - A Rhetorik Guide for B2B Technology Marketers
How does this apply to Rhetorik?
NetFinder Technology Database
Personal Data (Business Card Information)
Firmographics, Technographics, Purchasing Indicators
How does this apply to Rhetorik?
• Data minimization
• Impact
• Notification
• Transparency
• Reasonable Expectations
What does this mean for B2B Technology
Marketers?
• Suspects – legitimate interest, reasonable
expectation, transparency
• Prospects – reasonable expectation;
consent
• Clients – contract, legitimate interest,
reasonable expectation, data
minimization, transparency
Questions to ask of your Data Provider
• What personal data do they control?
• Is it collected lawfully?
• What is the legal basis being used for it?
• Is it up to date?
• How can I use it lawfully?
How does this apply to Rhetorik clients?
• Your legal basis - Legitimate
interest or consent?
• Legitimate Interest Assessment
• Transparency – notification, right
to object
• Suppression lists – maintaining
compliance
• Opt-ins – when does our data
become your data?
Thank You
info@rhetorik.com
+44 (0)118 989 8580

More Related Content

PDF
EU General Data Protection Regulation
PPTX
Sirius Legal - IgnitionOne Lunch & Learn
PDF
EU General Data Protection: Implications for Smart Metering
PPTX
What is GDPR?
PDF
ESET Quick Guide to the EU General Data Protection Regulation
PDF
Infographic : What's going to change with the GDPR (2018)
PDF
Tal ron drihem and co - LAC 2017 - Clarifying the situation: Legal responsibi...
PDF
New General Data Protection Regulation (Agnes Andersson Hammarstrand)
EU General Data Protection Regulation
Sirius Legal - IgnitionOne Lunch & Learn
EU General Data Protection: Implications for Smart Metering
What is GDPR?
ESET Quick Guide to the EU General Data Protection Regulation
Infographic : What's going to change with the GDPR (2018)
Tal ron drihem and co - LAC 2017 - Clarifying the situation: Legal responsibi...
New General Data Protection Regulation (Agnes Andersson Hammarstrand)

What's hot (20)

PDF
General Data Protection Regulation: what do you need to do to get prepared? -...
PPTX
The EU Data Protection Regulation - what you need to know
PPTX
Natasha longon - LAC 2017 - Data protection regulations: Are you at risk?
PDF
Jowanna Conboye - Stephens Scown
PPTX
Data Protection Reform: What Businesses Need to know About GDPR and its Impac...
PDF
GDPR: A Threat or Opportunity? www.normanbroadbent.
PPTX
The Practical Impact of the General Data Protection Regulation
PDF
How will your business be affected and what you can do to stay ahead of the n...
DOCX
General Data Protection Regulation
PDF
United Kingdom GDPR Action Taken Against Canadian Company
PDF
GDPR: the legal aspects. By Matthias of theJurists Europe.
PPTX
The Meaning and Impact of the General Data Protection Regulation
PPTX
Ghostery MCM - May 2016
PDF
Modelling the General Data Protection Regulation
PDF
Lawyer in Vietnam Dr. Oliver Massmann COMPLIANCE and CLEAR CONSENT - New EU G...
PPTX
UK GDPR: What New Direction?
PPTX
Unity & Inclusion NYC: An Introduction to the GDPR and Terms to Avoid in Fina...
PDF
Dla piper data breach report 2020
PPTX
Do You Have a Roadmap for EU GDPR Compliance?
General Data Protection Regulation: what do you need to do to get prepared? -...
The EU Data Protection Regulation - what you need to know
Natasha longon - LAC 2017 - Data protection regulations: Are you at risk?
Jowanna Conboye - Stephens Scown
Data Protection Reform: What Businesses Need to know About GDPR and its Impac...
GDPR: A Threat or Opportunity? www.normanbroadbent.
The Practical Impact of the General Data Protection Regulation
How will your business be affected and what you can do to stay ahead of the n...
General Data Protection Regulation
United Kingdom GDPR Action Taken Against Canadian Company
GDPR: the legal aspects. By Matthias of theJurists Europe.
The Meaning and Impact of the General Data Protection Regulation
Ghostery MCM - May 2016
Modelling the General Data Protection Regulation
Lawyer in Vietnam Dr. Oliver Massmann COMPLIANCE and CLEAR CONSENT - New EU G...
UK GDPR: What New Direction?
Unity & Inclusion NYC: An Introduction to the GDPR and Terms to Avoid in Fina...
Dla piper data breach report 2020
Do You Have a Roadmap for EU GDPR Compliance?
Ad

Similar to GDPR and Data Privacy in the EU - A Rhetorik Guide for B2B Technology Marketers (20)

PPT
Fusion2006_SF Revisited_Alexander Singewald
PDF
GDPR, what you need to know and how to prepare for it e book
PDF
"If we're leaving the EU, does GDPR even matter?" And other FAQs
PPT
GDPR FAQ'S
PPTX
NetSquared London - GDPR for charities
PDF
GDPR Overview
PDF
delphix-wp-gdpr-for-data-masking
PDF
A Legal Perspective of E-Businesses and E-Marketing for Small and Medium Ente...
PPTX
GDPR: Are you Ready?
PDF
CMR - GDPR - general introduction for marketeers
PDF
[REPORT PREVIEW] GDPR Beyond May 25, 2018
PPTX
Data Protection Rules are Changing: What Can You Do to Prepare?
DOCX
ENCRYPTION LAWS AND COMPLIANCE FOR THE EUROPEAN UNION
PPTX
GDPR Is Coming – Are Emailers Ready?
PPTX
Everything you need to know about the GDPR
PPT
The Privacy Advantage 2016 - Wojciech Wiewiorowski
PDF
EU GDPR and you: requirements for marketing
PPTX
GDPR training
 
PDF
Marketing data management | The new way to think about your data
Fusion2006_SF Revisited_Alexander Singewald
GDPR, what you need to know and how to prepare for it e book
"If we're leaving the EU, does GDPR even matter?" And other FAQs
GDPR FAQ'S
NetSquared London - GDPR for charities
GDPR Overview
delphix-wp-gdpr-for-data-masking
A Legal Perspective of E-Businesses and E-Marketing for Small and Medium Ente...
GDPR: Are you Ready?
CMR - GDPR - general introduction for marketeers
[REPORT PREVIEW] GDPR Beyond May 25, 2018
Data Protection Rules are Changing: What Can You Do to Prepare?
ENCRYPTION LAWS AND COMPLIANCE FOR THE EUROPEAN UNION
GDPR Is Coming – Are Emailers Ready?
Everything you need to know about the GDPR
The Privacy Advantage 2016 - Wojciech Wiewiorowski
EU GDPR and you: requirements for marketing
GDPR training
 
Marketing data management | The new way to think about your data
Ad

Recently uploaded (20)

PDF
EVOLUTION OF RURAL MARKETING IN INDIAN CIVILIZATION
PDF
Modernizing IT for the age of AI - Jason Aloia, Freshworks
DOCX
marketing plan starville............docx
PPTX
Solomon_Chapter 6_The Self: Mind, Gender, and Body.pptx
PPTX
PRINCIPLES OF MANAGEMENT and functions (1).pptx
PPTX
Amazon - STRATEGIC.......................pptx
PPTX
Best Digital marketing service provider in Chandigarh.pptx
PPTX
Ranking a Webpage with SEO (And Tracking It with the Right Attribution Type a...
PDF
UNIT 2 - 5 DISTRIBUTION IN RURAL MARKETS.pdf
PDF
E_Book_Customer_Relation_Management_0.pdf
PPTX
Sumit Saxena IIM J Project Market segmentation.pptx
PDF
Ramjilal Ramsaroop || Trending Branding
PPTX
The evolution of the internet - its impacts on consumers
PDF
UNIT 1 -3 Factors Influencing RURAL CONSUMER BEHAVIOUR.pdf
PDF
Coleção Nature .
PDF
AFCAT Syllabus 2026 Guide by Best Defence Academy in Lucknow.pdf
PDF
MARG’s Door & Window Hardware Catalogue | Trending Branding Digital Solutions
PDF
Proven AI Visibility: From SEO Strategy To GEO Tactics
PDF
Unit 1 -2 THE 4 As of RURAL MARKETING MIX.pdf
PDF
Is Kanav Kesar Legit or a Scam? Uncovering the Truth Behind the Hype
EVOLUTION OF RURAL MARKETING IN INDIAN CIVILIZATION
Modernizing IT for the age of AI - Jason Aloia, Freshworks
marketing plan starville............docx
Solomon_Chapter 6_The Self: Mind, Gender, and Body.pptx
PRINCIPLES OF MANAGEMENT and functions (1).pptx
Amazon - STRATEGIC.......................pptx
Best Digital marketing service provider in Chandigarh.pptx
Ranking a Webpage with SEO (And Tracking It with the Right Attribution Type a...
UNIT 2 - 5 DISTRIBUTION IN RURAL MARKETS.pdf
E_Book_Customer_Relation_Management_0.pdf
Sumit Saxena IIM J Project Market segmentation.pptx
Ramjilal Ramsaroop || Trending Branding
The evolution of the internet - its impacts on consumers
UNIT 1 -3 Factors Influencing RURAL CONSUMER BEHAVIOUR.pdf
Coleção Nature .
AFCAT Syllabus 2026 Guide by Best Defence Academy in Lucknow.pdf
MARG’s Door & Window Hardware Catalogue | Trending Branding Digital Solutions
Proven AI Visibility: From SEO Strategy To GEO Tactics
Unit 1 -2 THE 4 As of RURAL MARKETING MIX.pdf
Is Kanav Kesar Legit or a Scam? Uncovering the Truth Behind the Hype

GDPR and Data Privacy in the EU - A Rhetorik Guide for B2B Technology Marketers

  • 1. GDPR and Data Privacy in the EU - A Guide for US B2B Technology Marketers Samantha Magee Kevin Savage
  • 2. Key Points • Direct Marketing is possible with the GDPR • Opt-ins and Consent or Notifications and Legitimate Interest • Other EU legislation • Tips for B2B compliance from a DPO perspective
  • 4. Legal Bases Consent Contract Legal Obligation Vital Interest Public Task Legitimate Interest
  • 6. Myth 1 – The end of Direct Marketing Recital 47: The legitimate interests of a controller, or of a third party, may provide a legal basis for processing, provided that the interests or the fundamental rights and freedoms of the data subject are not overriding, taking into consideration the reasonable expectations of data subjects based on their relationship with the controller. (…) The processing of personal data for direct marketing purposes may be regarded as carried out for a legitimate interest.
  • 8. Myth 2: Massive fines “I have no intention of changing our proportionate and pragmatic approach. Hefty fines will be reserved for those organisations that persistently, deliberately or negligently flout the law.” Liz Denham, Information Commissioner
  • 9. How does this affect B2B Marketing? Suspects Prospects Clients
  • 11. UK – Privacy & Electronic Communications Regulations 2003 • GDPR is about the PROCESSING not the PROCESS • Email, as one form of direct marketing, is a PROCESS • PECR gives us the OPT-IN / OPT-OUT rules • OPT-IN is required for INDIVIDUALS, SOLE TRADERS and some PARTNERSHIPS • OPT-OUT is open to CORPORATE BODIES and PERSONAL CORPORATE EMAIL users
  • 12. GDPR and Data Privacy in the UK – PECR Source – GDPR for marketers: Consent and Legitimate Interests – page 21 Direct Marketing Association
  • 13. Data Privacy around the EU Country Legislation Belgium The Code of Economic Law, and the Royal Decree of 4 April 2003 (advertising by email) France Article L. 34-5 of the Code of Post and Telecommunication and Article L.121-20-5 of the Consumption Code Germany The German Act Against Unfair Practices 2004 (UWG) and the revised German Telecommunications Act Ireland The European Communities (Electronic Communications Networks and Services) Regulations 2011 (the “2011 Regulations”) Italy Protection of Personal Data Consolidation Act (Data Protection Code - Legislative Decree No. 196 of 30 June 2003) & Legislative Decree nr. 69/2012 Netherlands Telecommunicatiewet Spain Law 34/2002 on information society services and electronic commerce (LSSI) UK The Privacy and Electronic Communications (EC Directive) Regulations 2003
  • 14. Opted out? Y E S DO NOT EMAIL NO In Finland, France, Ireland, Portugal, Sweden, UK? NO Opted in? EMAIL Y E S N O Y E S STARTHERE
  • 16. How does this apply to Rhetorik? NetFinder Technology Database Personal Data (Business Card Information) Firmographics, Technographics, Purchasing Indicators
  • 17. How does this apply to Rhetorik? • Data minimization • Impact • Notification • Transparency • Reasonable Expectations
  • 18. What does this mean for B2B Technology Marketers? • Suspects – legitimate interest, reasonable expectation, transparency • Prospects – reasonable expectation; consent • Clients – contract, legitimate interest, reasonable expectation, data minimization, transparency
  • 19. Questions to ask of your Data Provider • What personal data do they control? • Is it collected lawfully? • What is the legal basis being used for it? • Is it up to date? • How can I use it lawfully?
  • 20. How does this apply to Rhetorik clients? • Your legal basis - Legitimate interest or consent? • Legitimate Interest Assessment • Transparency – notification, right to object • Suppression lists – maintaining compliance • Opt-ins – when does our data become your data?