Netimperative
Netimperative
  • Home
  • Ads
  • Content
  • Mobile
  • E-commerce
  • Social
  • Regulation
  • Video
  • Viral
Menu
  • Apple
  • Amazon
  • Facebook
  • Google
  • twitter
  • WhatsApp
  • YouTube

New EU laws: Massive £15m fines for mishandling consumer data

April 15, 2016

The European Parliament has voted on the biggest shake-up of data protection laws for 20 years, promising bigger fines for companies that fail to look after consumer’s data.

The European Union’s General Data Protection Regulation (GDPR) passed on April 14 in Strasbourg after more than four years of negotiations.

Key new laws:

  • EU firms will face fines of up to 4% of their global revenue for the previous year, or €20m (£15.8m) depending on which is greater
  • Businesses will have to appoint a special data protection officer if they are handling significant amount of sensitive data or monitoring
  • Firms must keep track of personal data in auditable ways and provide breach notification within 72 hours
  • The ‘right to be forgotten’ is being extended beyond web searches to all aspects of online life – so someone could ask Facebook or another social network to delete their profile entirely.
  • The rules will come into force in the summer. Then, member states will have two years to comply.
    The data protection regulation’s stated aim is to give citizens back control of their personal data as well as simplifying the regulatory environment.

    It could mean huge fines for companies that breach the law and offer some complex problems about how they store, delete and return data to citizens.
    The regulation is to replace the EU data protection directive which dates from 1995, when the internet was still in its infancy.

    It intends to protect consumers and improve law for businesses in a digitised word of smart phones, social media, internet banking and global transfers.

    Under the new law, companies will now have to take the issue of data protection much more seriously while the rights of individuals will be improved in the new digital age.

    Data protection errors will be far more expensive than before. Companies that do not comply with the strict new requirement will face fines of up to 4 per cent of their global revenue for the previous year, or €20 million (£15.8m) depending on which is greater.

    In the UK, the maximum current penalty stands at about £500,000.

    Businesses will have to appoint a special data protection officer if they are handling significant amount of sensitive data or monitoring the behaviour of many consumers. Under the new legislation firms must keep track of personal data in auditable ways and provide breach notification within 72 hours.

    The new rules will essentially give individuals greater control over their personal data.

    Among other things, consumers will have the right to be forgotten. This means that when an individual will no longer want his data to be processed, provided there are no legitimate reasons for retaining it, he can ask his company to erase it.

    This extends to internet companies storing data, so someone could now technically ask Facebook to erase its profile along with all the data that it has gathered while they were using it.

    It is unlikely to extend to news articles that people want removed, which are likely to be protected under freedom of expression rules.

    Similarly, there is provision in the new regulation for consumers to transfer their data from one service to another.

    This could be a massive boon for consumers – allowing them to swap internet or email provider more easily and to shop around for services such as utilities and insurance.

    The new laws will bring into question how companies would actually give data back, in what format and, more crucially, what data the user is considered to have provided.

    Fraser Kyne, regional SE director at Bromium, commented on the new laws: “This legislation will make it harder for businesses to keep their heads in the sand – and it will force the issue of cyber security even further up the food chain. It’s time to stop admiring the problem and to start doing something about it. There will be a huge shakedown in the IT security industry over the coming months, and only those who offer true and sustainable value will survive; because businesses will rely on the security industry to actually tackle the disease, not just deal with the symptoms.”

    Regulation email, Facebook, global, media, Regulation

    Archives

    Tags

    advertising agencies Amazon analytics Android Apple apps Australia BBC brands Brazil broadband China Christmas comScore content digital marketing ecommerce email Entertainment Europe Facebook France games Germany global Google government images infographic local marketing media Microsoft music Privacy retail Search security smartphones technology Twitter UK video YouTube

    Recent Posts

    • Top six Valentine’s Day ads for 2022
    • 2021 Halloween: digital marketing campaigns we loved this year
    • Empowering employees; the critical link between EX and CX
    • Investing in in-app social features is a must in a world that is crying out to be connected
    • QR codes, Gen Z and the future of OOH

    Copyright © 2025 Netimperative.

    Magazine WordPress Theme by themehall.com

    We use cookies to improve the website and your experience. We’ll assume you’re okay with this, but you’re welcome to opt-out
    Cookie settingsACCEPT
    Privacy & Cookies Policy

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
    Non-necessary
    Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
    SAVE & ACCEPT