{"id":1376,"date":"2017-05-25T22:35:23","date_gmt":"2017-05-25T14:35:23","guid":{"rendered":"http:\/\/microdium.net\/public\/2017\/05\/25\/bci-us-more-prepared-for-gdpr-than-uk\/"},"modified":"2017-05-25T22:35:23","modified_gmt":"2017-05-25T14:35:23","slug":"bci-us-more-prepared-for-gdpr-than-uk","status":"publish","type":"post","link":"https:\/\/www.microdium.com\/public\/2017\/05\/25\/bci-us-more-prepared-for-gdpr-than-uk\/","title":{"rendered":"BCI: US more prepared for GDPR than UK"},"content":{"rendered":"<div class=\"K2FeedImage\"><img decoding=\"async\" src=\"https:\/\/www.microdium.net\/public\/wp-content\/uploads\/2017\/05\/277605d83ef6866dc303aa96f24fb935_S.jpg\" alt=\"BCI: US more prepared for GDPR than UK\" \/><\/div>\n<div class=\"K2FeedIntroText\">\n<h5>The Business Continuity Institute<\/h5>\n<p>&#013;<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/www.microdium.net\/public\/wp-content\/uploads\/2017\/05\/rczsowb0btqsf1lblwhc.jpg\" alt=\"\" border=\"0\" \/><\/p>\n<p>&#013;<\/p>\n<div>&#013;<\/p>\n<p>With only one year to go before the European Union General Data Protection Regulations (GDPR) deadline, many US businesses with European customers are not fully prepared to comply with the new laws, which include \u2018Right to be Forgotten\u2019 customer consent mandates and regulations on how customer data is handled. US companies, or any organization that stores data on EU citizens,\u00a0will face hefty fines or lawsuits if they don\u2019t fully comply &#8211; up to\u00a04% of annual turnover or\u00a0\u20ac20 million, whichever is greater.<\/p>\n<p>&#013;<\/p>\n<p>US large-company CIOs saying they are well-briefed on the impending laws, up from 73%, when asked the same question last year. However, only 60% have detailed plans in place to address the new laws\u2019 requirements. This is up from 33% from last year\u2019s survey, but suggests there is still significant work ahead.<\/p>\n<p>&#013;<\/p>\n<p>94% of the large US company CIOs surveyed say their companies have personally identifiable information (PII) on EU customers, making the new mandates applicable to them.<\/p>\n<p>&#013;<\/p>\n<p>Particularly challenging is the mandate to obtain customer permission to use PII in application testing, a critical part of software development. 55% of US firms have a plan in place to address this, but nearly one-third say they don\u2019t fully understand the impact of this ruling.<\/p>\n<p>&#013;<\/p>\n<p>The data complexity of modern systems is also an issue, as 85% admit it\u2019s sometimes difficult to know exactly where all their customer data resides, an increase from last year\u2019s survey with 78% then admitting that difficulty.<\/p>\n<p>&#013;<\/p>\n<p>\u201cUS organizations are heading in the right direction on GDPR compliance, but there is still work to be done to improve data governance capabilities,\u201d said Chris O\u2019Malley, CEO of Compuware. \u201cManual processes that are used to locate and protect customer data must be replaced with automated capabilities that enable businesses to quickly, accurately and visually manage data privatization and protection.\u201d<\/p>\n<p>&#013;<\/p>\n<p>The findings also reveal US organizations are better prepared for the GDPR than their European counterparts. Compared to the 60% of US companies saying they have detailed and far-reaching plans in place, only 19% of UK companies have such plans prepared, a modest improvement of only 1% since last year.<\/p>\n<p>&#013;<\/p>\n<p>US respondents ranked their biggest GDPR compliance hurdles to overcome as follows:<\/p>\n<p>&#013;<\/p>\n<ul>\n<li>Design and implementation of internal processes (65%)<\/li>\n<p>&#013;<\/p>\n<li>Securing customer consent to use their personal data and handling the process of data withdrawal if requested by the customer (64%)<\/li>\n<p>&#013;<\/p>\n<li>Ensuring data quality (52%)<\/li>\n<p>&#013;<\/p>\n<li>Cost of implementation (43%)<\/li>\n<p>&#013;<\/p>\n<li>Data complexity (41%)<\/li>\n<p>&#013;\n<\/ul>\n<\/div>\n<\/div>\n<p>&#013;<br \/>\nSource: DRJ New feed<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Business Continuity Institute &#013; &#013; &#013; With only one year to go before the European Union General Data Protection Regulations (GDPR) deadline, many US businesses with European customers are not fully prepared to comply with the new laws, which include \u2018Right to be Forgotten\u2019 customer consent mandates and regulations on how customer data is [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":1377,"comment_status":"false","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[11],"tags":[15],"class_list":["post-1376","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-disaster-recovery-cybersecurity-news-malaysia","tag-about"],"_links":{"self":[{"href":"https:\/\/www.microdium.com\/public\/wp-json\/wp\/v2\/posts\/1376","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.microdium.com\/public\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.microdium.com\/public\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.microdium.com\/public\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.microdium.com\/public\/wp-json\/wp\/v2\/comments?post=1376"}],"version-history":[{"count":0,"href":"https:\/\/www.microdium.com\/public\/wp-json\/wp\/v2\/posts\/1376\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.microdium.com\/public\/wp-json\/wp\/v2\/media?parent=1376"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.microdium.com\/public\/wp-json\/wp\/v2\/categories?post=1376"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.microdium.com\/public\/wp-json\/wp\/v2\/tags?post=1376"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}