SlideShare une entreprise Scribd logo
1  sur  3
1
ROTARY AND THE GENERAL DATA PROTECTION
REGULATION (GDPR)
Whatis GDPR?
GDPR is a new European Union law that strengthens data protection rules for EU residents.The law
applies to all companies that process data within the EU but also to foreign organizations, like Rotary
International, that offer goods and services to EU residents. The law takes effect 25 May and replaces the
EU’s 1995 Data Protection Directive.
Whatdoes Rotary International do to protect personaldata?
Long before GDPR, Rotary’s policies took care to protect your information. Rotary’s Website Privacy
Policy explains what information we collect, how we collect it, and how we use it. We also striveto give
you control over your data so you can decide what personal information to share,as well as review it
whenever you want.
The measures we take to safeguardyour personal data includeusing password-protected databases on
secure servers behind firewalls and requiring all staffto attend information security awareness training
each year.
How has Rotary International prepared forGDPR?
First, we completed a readiness assessment and risk analysis. These helped us understand how the new
regulation would affect ourprocesses and what we needed to change to comply with GDPR. Our analysis
led us to focus on these areas:
 Process inventory. We inventoried all ofour personal data processing activities in order to
comply with GDPR’s Article30.
 Lawful basis. We reviewed all data processing to ensure that we have a documented legal basis, or
reason, for every process,according to GDPR.
 Policy and notices. We’re updating our Website PrivacyPolicy to meet GDPR expectations. And
we’re making our notices about how yourpersonal data is used morespecific.
 Records management. We updated our schedules for retaining records that contain personal
data to make sure we’re keeping records only as long as necessary.
 Data breach procedures.We revised our guidelines for responding to a breach,according to
GDPR expectations for notifying constituents ofa breach.
2
Whatdoes GDPR mean for me?
Rotary is applying thesenew standards globally, not just for our European constituents. So no matter
where you live,ifRotary processes your personal data, you will have the following rights:
 Right to be informed: Rotary will regularly disclose to you what personal data we collectand for
what purpose.
 Right to object: You can tell us ifyou no longer want your personal data to be processed in a
certain way, such as for direct marketing.
 Right to rectification: Y ou can write us at data@rotary.org to correct errors in yourpersonal
data.
Do I need to give Rotary International consentto use my personaldata?
In general, no. Under GDPR, consent is just one ofsix legal bases used to determinethat processing
someone’s data is lawful. Rotary will generally rely on “legitimate interest” as the lawful basis for
processing personal data, because doing so is necessary to effectively manage and operateRotary and
won’t unduly infringe yourlegal rights.
We will ask for your consentonly when it’s truly appropriate,for example, when we are processing special
categories ofpersonal data, like health information.
My club or district is in the EU. Do I need to do anything?
Y es. Ifyour clubor districtis in the EU and is processing the personal data ofyour members or other
program participants, you areobligated to follow GDPR requirements. This may mean:
 Providing notice to yourmembers abouthow their personal data is used
 Minimizing the personal data that you have and keeping it secure
 Getting consent when it’s appropriate(for example, for personal data ofyouths under the age of16)
Further information can be found at EUGDPR.org or on one ofthe many EU country data protection
authorities’ websites.Y ou may also want to consult with local privacyexperts to better understand your
responsibilities underthe law.
3
I’m notin the EU. Do I need to do anything?
Possibly.Even ifyour club or district is not in the EU, you are required to follow GDPR rules if you
process the personal data ofEU residents. Youmay also need to comply with GDPR if you welcome
European attendees at events, hostexchangestudents from Europe, or partnerwith European members
on serviceprojects.
Whatis Rotary doing to help clubs and districts with GDPR?
We have updated Rotary’s Privacy Policy with terms that align with GDPR. And you can writeus at
privacy@rotary.org with any questions.

Contenu connexe

Tendances

Tendances (12)

Fulcio
Fulcio Fulcio
Fulcio
 
Privacy Policy if No Personal Data is Collected
Privacy Policy if No Personal Data is CollectedPrivacy Policy if No Personal Data is Collected
Privacy Policy if No Personal Data is Collected
 
privacy+policy
privacy+policyprivacy+policy
privacy+policy
 
General Data Protection Regulation for Ops
General Data Protection Regulation for OpsGeneral Data Protection Regulation for Ops
General Data Protection Regulation for Ops
 
Australia Privacy Act of 1988
Australia Privacy Act of 1988Australia Privacy Act of 1988
Australia Privacy Act of 1988
 
Gdprplan.com affiliate huddle 10th may 2018
Gdprplan.com   affiliate huddle 10th may 2018Gdprplan.com   affiliate huddle 10th may 2018
Gdprplan.com affiliate huddle 10th may 2018
 
The Basics of GDPR
The Basics of GDPR The Basics of GDPR
The Basics of GDPR
 
GDPR Training Course - Training Express
GDPR Training Course - Training ExpressGDPR Training Course - Training Express
GDPR Training Course - Training Express
 
The Countdown to the GDPR Regulations
The Countdown to the GDPR RegulationsThe Countdown to the GDPR Regulations
The Countdown to the GDPR Regulations
 
GDPR Privacy Policy
GDPR Privacy PolicyGDPR Privacy Policy
GDPR Privacy Policy
 
Ipsos MORI Political Monitor February 2015: Tactical voting and preferred coa...
Ipsos MORI Political Monitor February 2015: Tactical voting and preferred coa...Ipsos MORI Political Monitor February 2015: Tactical voting and preferred coa...
Ipsos MORI Political Monitor February 2015: Tactical voting and preferred coa...
 
How will GDPR affect your business - Marketing Fox & Birkett Long
How will GDPR affect your business - Marketing Fox & Birkett LongHow will GDPR affect your business - Marketing Fox & Birkett Long
How will GDPR affect your business - Marketing Fox & Birkett Long
 

Similaire à Data Privacy and Data Protection: Rotary’s Compliance with GDPR Handout

Guide to-the-general-data-protection-regulation
Guide to-the-general-data-protection-regulationGuide to-the-general-data-protection-regulation
Guide to-the-general-data-protection-regulation
N N
 

Similaire à Data Privacy and Data Protection: Rotary’s Compliance with GDPR Handout (20)

GDPR - Are you ready?
GDPR - Are you ready?GDPR - Are you ready?
GDPR - Are you ready?
 
Data protection
Data protectionData protection
Data protection
 
Gdpr zilla
Gdpr zillaGdpr zilla
Gdpr zilla
 
General data protection
General data protectionGeneral data protection
General data protection
 
GDPR: the legal aspects. By Matthias of theJurists Europe.
GDPR: the legal aspects. By Matthias of theJurists Europe.GDPR: the legal aspects. By Matthias of theJurists Europe.
GDPR: the legal aspects. By Matthias of theJurists Europe.
 
GDPR Overview
GDPR OverviewGDPR Overview
GDPR Overview
 
GDPR-Overview
GDPR-OverviewGDPR-Overview
GDPR-Overview
 
Impact of GDPR on Data Collection and Processing
Impact of GDPR on Data Collection and ProcessingImpact of GDPR on Data Collection and Processing
Impact of GDPR on Data Collection and Processing
 
GDPR Whitepaper
GDPR WhitepaperGDPR Whitepaper
GDPR Whitepaper
 
GDPR webinar presentation | LawBite
GDPR webinar presentation | LawBiteGDPR webinar presentation | LawBite
GDPR webinar presentation | LawBite
 
Beginning your General Data Protection Regulation (GDPR) Journey
Beginning your General Data Protection Regulation (GDPR) JourneyBeginning your General Data Protection Regulation (GDPR) Journey
Beginning your General Data Protection Regulation (GDPR) Journey
 
Understanding the EU's new General Data Protection Regulation (GDPR)
Understanding the EU's new General Data Protection Regulation (GDPR)Understanding the EU's new General Data Protection Regulation (GDPR)
Understanding the EU's new General Data Protection Regulation (GDPR)
 
GDPR vs Blockchain – A Paradox, Challenge and an Opportunity
GDPR vs Blockchain – A Paradox, Challenge and an OpportunityGDPR vs Blockchain – A Paradox, Challenge and an Opportunity
GDPR vs Blockchain – A Paradox, Challenge and an Opportunity
 
GDPR_Skillcast Presentation Template (1).pptx
GDPR_Skillcast Presentation Template (1).pptxGDPR_Skillcast Presentation Template (1).pptx
GDPR_Skillcast Presentation Template (1).pptx
 
A Brave New World Of Data Protection. Ready? Counting down to GDPR.
A Brave New World Of Data Protection. Ready? Counting down to GDPR. A Brave New World Of Data Protection. Ready? Counting down to GDPR.
A Brave New World Of Data Protection. Ready? Counting down to GDPR.
 
GDPR Explained - A Quick Guide for US Businesses
GDPR Explained - A Quick Guide for US BusinessesGDPR Explained - A Quick Guide for US Businesses
GDPR Explained - A Quick Guide for US Businesses
 
A quick look at gdpr
A quick look at gdprA quick look at gdpr
A quick look at gdpr
 
General data protection regulation
General data protection regulationGeneral data protection regulation
General data protection regulation
 
General Data Protection Regulation (GDPR) Requirements by Region
General Data Protection Regulation (GDPR) Requirements by RegionGeneral Data Protection Regulation (GDPR) Requirements by Region
General Data Protection Regulation (GDPR) Requirements by Region
 
Guide to-the-general-data-protection-regulation
Guide to-the-general-data-protection-regulationGuide to-the-general-data-protection-regulation
Guide to-the-general-data-protection-regulation
 

Plus de Rotary International

Plus de Rotary International (20)

THE_PROMOTER_-_DRR_TRAINING_PRECON_2022.pptx
THE_PROMOTER_-_DRR_TRAINING_PRECON_2022.pptxTHE_PROMOTER_-_DRR_TRAINING_PRECON_2022.pptx
THE_PROMOTER_-_DRR_TRAINING_PRECON_2022.pptx
 
RIC 22 MDIO Breakout.pptx
RIC 22 MDIO Breakout.pptxRIC 22 MDIO Breakout.pptx
RIC 22 MDIO Breakout.pptx
 
IC22 Winning Teams - Nicole Peña.pptx
IC22 Winning Teams - Nicole Peña.pptxIC22 Winning Teams - Nicole Peña.pptx
IC22 Winning Teams - Nicole Peña.pptx
 
DRR Training The Organizer.pptx
DRR Training The Organizer.pptxDRR Training The Organizer.pptx
DRR Training The Organizer.pptx
 
IC22 Rotaract - Keys to level up your influence_Casas&Guerra (2).pptx
IC22 Rotaract - Keys to level up your influence_Casas&Guerra (2).pptxIC22 Rotaract - Keys to level up your influence_Casas&Guerra (2).pptx
IC22 Rotaract - Keys to level up your influence_Casas&Guerra (2).pptx
 
Service Ambassadors Presentation.pptx
Service Ambassadors Presentation.pptxService Ambassadors Presentation.pptx
Service Ambassadors Presentation.pptx
 
DRR Training_The Trainer 2022.pptx
DRR Training_The Trainer 2022.pptxDRR Training_The Trainer 2022.pptx
DRR Training_The Trainer 2022.pptx
 
Burnout management.pptx
Burnout management.pptxBurnout management.pptx
Burnout management.pptx
 
Leadership Development Program Presentation.pptx
Leadership Development Program Presentation.pptxLeadership Development Program Presentation.pptx
Leadership Development Program Presentation.pptx
 
RI Convention 2022_Rotaract Pre Convention_2022.06.04 NewGen Peacebuilders.pptx
RI Convention 2022_Rotaract Pre Convention_2022.06.04 NewGen Peacebuilders.pptxRI Convention 2022_Rotaract Pre Convention_2022.06.04 NewGen Peacebuilders.pptx
RI Convention 2022_Rotaract Pre Convention_2022.06.04 NewGen Peacebuilders.pptx
 
IC22 Rotaract Intro to DRR Training.pptx
IC22 Rotaract Intro to DRR Training.pptxIC22 Rotaract Intro to DRR Training.pptx
IC22 Rotaract Intro to DRR Training.pptx
 
351 930-1020.pptx
351 930-1020.pptx351 930-1020.pptx
351 930-1020.pptx
 
IC22 Rotaract Precon_Making an Impact Through Rotary Grants.pptx
IC22 Rotaract Precon_Making an Impact Through Rotary Grants.pptxIC22 Rotaract Precon_Making an Impact Through Rotary Grants.pptx
IC22 Rotaract Precon_Making an Impact Through Rotary Grants.pptx
 
Lets Celebrate Inclusion.pptx
Lets Celebrate Inclusion.pptxLets Celebrate Inclusion.pptx
Lets Celebrate Inclusion.pptx
 
IC22 Rotaract Networking Impactful Service Project.pptx
IC22 Rotaract Networking  Impactful Service Project.pptxIC22 Rotaract Networking  Impactful Service Project.pptx
IC22 Rotaract Networking Impactful Service Project.pptx
 
Membership Engagement Presentation.pptx
Membership Engagement Presentation.pptxMembership Engagement Presentation.pptx
Membership Engagement Presentation.pptx
 
Lessons Learned.pptx
Lessons Learned.pptxLessons Learned.pptx
Lessons Learned.pptx
 
Nurturing Strategic Partnerships.pdf
Nurturing Strategic Partnerships.pdfNurturing Strategic Partnerships.pdf
Nurturing Strategic Partnerships.pdf
 
Panel Discussion environment_ (003).pptx
Panel Discussion environment_ (003).pptxPanel Discussion environment_ (003).pptx
Panel Discussion environment_ (003).pptx
 
General Session June 4.pptx
General Session June 4.pptxGeneral Session June 4.pptx
General Session June 4.pptx
 

Dernier

Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Victor Rentea
 

Dernier (20)

Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontology
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital Adaptability
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 

Data Privacy and Data Protection: Rotary’s Compliance with GDPR Handout

  • 1. 1 ROTARY AND THE GENERAL DATA PROTECTION REGULATION (GDPR) Whatis GDPR? GDPR is a new European Union law that strengthens data protection rules for EU residents.The law applies to all companies that process data within the EU but also to foreign organizations, like Rotary International, that offer goods and services to EU residents. The law takes effect 25 May and replaces the EU’s 1995 Data Protection Directive. Whatdoes Rotary International do to protect personaldata? Long before GDPR, Rotary’s policies took care to protect your information. Rotary’s Website Privacy Policy explains what information we collect, how we collect it, and how we use it. We also striveto give you control over your data so you can decide what personal information to share,as well as review it whenever you want. The measures we take to safeguardyour personal data includeusing password-protected databases on secure servers behind firewalls and requiring all staffto attend information security awareness training each year. How has Rotary International prepared forGDPR? First, we completed a readiness assessment and risk analysis. These helped us understand how the new regulation would affect ourprocesses and what we needed to change to comply with GDPR. Our analysis led us to focus on these areas:  Process inventory. We inventoried all ofour personal data processing activities in order to comply with GDPR’s Article30.  Lawful basis. We reviewed all data processing to ensure that we have a documented legal basis, or reason, for every process,according to GDPR.  Policy and notices. We’re updating our Website PrivacyPolicy to meet GDPR expectations. And we’re making our notices about how yourpersonal data is used morespecific.  Records management. We updated our schedules for retaining records that contain personal data to make sure we’re keeping records only as long as necessary.  Data breach procedures.We revised our guidelines for responding to a breach,according to GDPR expectations for notifying constituents ofa breach.
  • 2. 2 Whatdoes GDPR mean for me? Rotary is applying thesenew standards globally, not just for our European constituents. So no matter where you live,ifRotary processes your personal data, you will have the following rights:  Right to be informed: Rotary will regularly disclose to you what personal data we collectand for what purpose.  Right to object: You can tell us ifyou no longer want your personal data to be processed in a certain way, such as for direct marketing.  Right to rectification: Y ou can write us at data@rotary.org to correct errors in yourpersonal data. Do I need to give Rotary International consentto use my personaldata? In general, no. Under GDPR, consent is just one ofsix legal bases used to determinethat processing someone’s data is lawful. Rotary will generally rely on “legitimate interest” as the lawful basis for processing personal data, because doing so is necessary to effectively manage and operateRotary and won’t unduly infringe yourlegal rights. We will ask for your consentonly when it’s truly appropriate,for example, when we are processing special categories ofpersonal data, like health information. My club or district is in the EU. Do I need to do anything? Y es. Ifyour clubor districtis in the EU and is processing the personal data ofyour members or other program participants, you areobligated to follow GDPR requirements. This may mean:  Providing notice to yourmembers abouthow their personal data is used  Minimizing the personal data that you have and keeping it secure  Getting consent when it’s appropriate(for example, for personal data ofyouths under the age of16) Further information can be found at EUGDPR.org or on one ofthe many EU country data protection authorities’ websites.Y ou may also want to consult with local privacyexperts to better understand your responsibilities underthe law.
  • 3. 3 I’m notin the EU. Do I need to do anything? Possibly.Even ifyour club or district is not in the EU, you are required to follow GDPR rules if you process the personal data ofEU residents. Youmay also need to comply with GDPR if you welcome European attendees at events, hostexchangestudents from Europe, or partnerwith European members on serviceprojects. Whatis Rotary doing to help clubs and districts with GDPR? We have updated Rotary’s Privacy Policy with terms that align with GDPR. And you can writeus at privacy@rotary.org with any questions.