Use promo code:
CTA20

Expert Advice Community

Guest

Assessing data breaches

  Quote
Guest
Guest user Created:   Jun 20, 2018 Last commented:   Jun 20, 2018

Assessing data breaches

Under GDPR I believe we are obligated to notify customers of a data breach when that breach “is likely to result in high risk to the rights and freedoms of the data subject”.
0 0

Assign topic to the user

EU GDPR PERSONAL DATA PROTECTION POLICY

Top-level document that describes main roles and responsibilities.

EU GDPR PERSONAL DATA PROTECTION POLICY

Top-level document that describes main roles and responsibilities.

Expert
Andrei Hanganu Jun 20, 2018

I'm trying to figure out what this means - when we should or shouldn't notify customers.

The sort of data we typically have is:
- IP address
- Full name
- Email
- Home address
- Work address & name of work (sometimes)
- Purchase history (we sell clothes)
- Other less interesting things such as what pages have been visited, which marketing emails have been opened, etc.

Based on my limited understanding, the most sensitive information we have is a customers's size data. If we leaked, say, 100,000 records it may directly or indirectly contain information on someone's size. Can you help clarify this?

Answer: I think you will find an answer to this if you read our “Assessing the severity of personal data breaches according to GDPR” (https://info.advis era.com/eugdpracademy/free-download/assessing-the-severity-of-personal-data-breaches-according-to-gdpr). This document will provide you with a simple “out of the box” methodology to asses your data breaches.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jun 20, 2018

Jun 20, 2018

Suggested Topics

Guest user Created:   Nov 05, 2021 EU GDPR
Replies: 1
0 0

Questions for DPIA

Guest user Created:   Feb 01, 2021 EU GDPR
Replies: 3
0 0

Possible GDPR breach