15 results on '"eu gdpr"'
Search Results
2. DATA SUBJECT ACCESS REQUEST: WHAT INDONESIA CAN LEARN AND OPERATIONALISE IN 2024?
- Author
-
Muhammad Deckri Algamar and Noriswadi Ismail
- Subjects
data protection ,cybersecurity ,indonesia pdp law ,eu gdpr ,dsar ,Banking ,HG1501-3550 - Abstract
The enactment of the Indonesian Personal Data Protection (PDP) Law is in line with the nation’s position as the most promising digital economy in Southeast Asia. The PDP Law, amongst others, introduces Data Subject Access Request (DSAR), a cornerstone mechanism to exercise data subject rights mirroring the European Union General Data Protection Regulation (GDPR). However, major causes of DSAR failure are predominantly triggered by resource constraint, lack of fundamental understanding, and technical gap when responding to such requests. In practice, DSAR management is time consuming and taxing since organisations shall manage numerous and complex requests within a tight timeline. By way of comparative analysis, we explore the concept of data subject rights, specifically the Rights to Access. Through observations and constructive responses by global data protection professionals, academics and non-lawyers, this paper alluded that similar failure scenario might occur in Indonesia when PDP Law grace period ended in 2024 – if the causes are not addressed and mitigated. Apropos, in safeguarding data subjects’ right, we assert that DSAR under the PDP law might bring disproportionate impracticality, hence there is demand for a robust consultation and holistic regulatory implementation. We also propose to consider a harmonized DSAR ASEAN framework for future proofing cross-border payment, in 2024 and beyond.
- Published
- 2023
- Full Text
- View/download PDF
3. Privacy Pattern Catalog Approach for GDPR Compliant Appliance: From Legal Requirements to Technology Design
- Author
-
Waidelich, Lukas, Schuster, Thomas, van der Aalst, Wil, Series Editor, Ram, Sudha, Series Editor, Rosemann, Michael, Series Editor, Szyperski, Clemens, Series Editor, Guizzardi, Giancarlo, Series Editor, Maślankowski, Jacek, editor, Marcinkowski, Bartosz, editor, and Rupino da Cunha, Paulo, editor
- Published
- 2023
- Full Text
- View/download PDF
4. Conception of An Independent Surveillance Authority in the Effort to Protect Population Data
- Author
-
Daffa Ladro Kusworo, Andre Arya Pratama, Maghfira Nur Khaliza Fauzi, and Maya Shafira
- Subjects
authority ,eu gdpr ,population data ,protection ,Environmental law ,K3581-3598 - Abstract
The rapid progress of digital transformation underscores the critical need for robust personal data protection as a guarantee of individual rights, particularly to address the prevalent issues of data leakage and misuse, including population data. This need aligns with Article 28 G of the 1945 Constitution, which is actualized through the provision of access to population data for verification purposes to both state and private institutions. Additionally, data users are mandated to adhere to a Zero Data Sharing Policy that strictly prohibits the dissemination or sharing of population data with third parties. However, challenges persist due to limited legal protections concerning personal data classifications and the delineation of authority between data owners and users, highlighting the urgent need for comprehensive personal data protection legislation. Furthermore, the establishment of an Independent Surveillance Authority is essential to ensure effective regulation enforcement. This Authority's roles and powers would align with government efforts to protect population data and be guided by the standards set forth in the European Union General Data Protection Regulation (EU GDPR). Its independent status is crucial to prevent undue influence from parties with vested interests. Functionally, such an authority would enhance the effectiveness of the Zero Data Sharing Policy through its capacity to conduct investigations and enforce collective rights, thus ensuring the protection of human rights. This research employs normative legal research, utilizing legislation and literature reviews alongside descriptive analysis with a deductive approach to manage qualitative data, concluding that legal protections must be bolstered by optimal oversight through an established Independent Surveillance Authority.
- Published
- 2022
- Full Text
- View/download PDF
5. #consented – A semantic consent code to facilitate consistent documentation and implementation of consent in collaborative medical research.
- Author
-
Bialke, Martin, Hampf, Christopher, Blumentritt, Arne, Moser, Frank-Michael, Lang, Stefan, Stehn, Aileen, Sargsyan, Ellen, Hoffmann, Wolfgang, and Kraus, Monika
- Published
- 2024
- Full Text
- View/download PDF
6. Ethical Challenges and Dynamic Informed Consent
- Author
-
Tauginienė, Loreta, Hummer, Philipp, Albert, Alexandra, Cigarini, Anna, Vohland, Katrin, Vohland, Katrin, editor, Land-Zandstra, Anne, editor, Ceccaroni, Luigi, editor, Lemmens, Rob, editor, Perelló, Josep, editor, Ponti, Marisa, editor, Samson, Roeland, editor, and Wagenknecht, Katherin, editor
- Published
- 2021
- Full Text
- View/download PDF
7. A Management Platform for Citizen’s Data Protection Regulation
- Author
-
Huertas Celdrán, Alberto, Gil Pérez, Manuel, Mlakar, Izidor, Alcaraz Calero, Jose M., García Clemente, Félix J., Martínez Pérez, Gregorio, Barbosa, Simone Diniz Junqueira, Editorial Board Member, Filipe, Joaquim, Editorial Board Member, Ghosh, Ashish, Editorial Board Member, Kotenko, Igor, Editorial Board Member, Zhou, Lizhu, Editorial Board Member, Wang, Guojun, editor, El Saddik, Abdulmotaleb, editor, Lai, Xuejia, editor, Martinez Perez, Gregorio, editor, and Choo, Kim-Kwang Raymond, editor
- Published
- 2019
- Full Text
- View/download PDF
8. Towards New Privacy Regulations in Europe: Users’ Privacy Perception in Recommender Systems
- Author
-
Mohallick, Itishree, De Moor, Katrien, Özgöbek, Özlem, Gulla, Jon Atle, Hutchison, David, Series Editor, Kanade, Takeo, Series Editor, Kittler, Josef, Series Editor, Kleinberg, Jon M., Series Editor, Mattern, Friedemann, Series Editor, Mitchell, John C., Series Editor, Naor, Moni, Series Editor, Pandu Rangan, C., Series Editor, Steffen, Bernhard, Series Editor, Terzopoulos, Demetri, Series Editor, Tygar, Doug, Series Editor, Weikum, Gerhard, Series Editor, Wang, Guojun, editor, Chen, Jinjun, editor, and Yang, Laurence T., editor
- Published
- 2018
- Full Text
- View/download PDF
9. A Data Protection Impact Assessment Methodology for Cloud
- Author
-
Alnemr, Rehab, Cayirci, Erdal, Corte, Lorenzo Dalla, Garaga, Alexandr, Leenes, Ronald, Mhungu, Rodney, Pearson, Siani, Reed, Chris, de Oliveira, Anderson Santana, Stefanatou, Dimitra, Tetrimida, Katerina, Vranaki, Asma, Hutchison, David, Series editor, Kanade, Takeo, Series editor, Kittler, Josef, Series editor, Kleinberg, Jon M., Series editor, Mattern, Friedemann, Series editor, Mitchell, John C., Series editor, Naor, Moni, Series editor, Pandu Rangan, C., Series editor, Steffen, Bernhard, Series editor, Terzopoulos, Demetri, Series editor, Tygar, Doug, Series editor, Weikum, Gerhard, Series editor, Berendt, Bettina, editor, Engel, Thomas, editor, Ikonomou, Demosthenes, editor, Le Métayer, Daniel, editor, and Schiffner, Stefan, editor
- Published
- 2016
- Full Text
- View/download PDF
10. IMPACT OF EU GENERAL DATA PROTECTION REGULATION ON THE MANAGEMENT OF EDUCATION.
- Author
-
Jemeļjanenko, Antoņina
- Subjects
- *
GENERAL Data Protection Regulation, 2016 , *ELECTRONIC data processing , *EDUCATION research , *PUBLIC institutions , *DATA protection - Abstract
On 25 May 2018 the European Union's General Data Protection Regulation (EU GDPR) becomes enforced (regulation 2016/679 of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data). The GDPR provides stricter general rules applying to any kind of personal data processing. For educational sector, this creates new legal and operational risks, the severity of which may result in enormously high fines. For educational institutions the minimal compliance means requirement to appoint Data Protection Officers, limitations and restrictions on usage of personal data and its application within the defined legal scope. These changes will bring significant impact on management of education, where personal data is an integral part of daily operations, as well as on the academic research, where personal data is frequently used in large amounts. This research article aim is to provide an overview of the EU GDPR and draw out basic recommendations about compliance to the EU GDPR to be considered for management of educational sector, where personal data is used in daily operations of both public and private institutions, as well as for scientific projects, which often include the processing of personal data, the use of which is strictly regulated by the EU GDPR. [ABSTRACT FROM AUTHOR]
- Published
- 2018
11. Pengejawantahan EU GDPR dalam RUU Perlindungan Data Pribadi: Penguatan Perlindungan Data Pemilih oleh KPU
- Author
-
Rizqi, Laila Alfina Mayasari, Fahrezi, Syahrico Radya, and Permatasari, Tjokorda Istri Diah Candra
- Subjects
KPU ,Data Pemilih ,RUU PDP ,EU GDPR - Abstract
The case of leaking permanent voter data for the 2014 general election (Pemilu) emerged in May 2020. The vulnerability of personal data breaches is the raison d'etre of the legal umbrella that specifically regulates the protection of personal data. On the other hand, the government continues to improve the Personal Data Protection Bill (PDP). One of the substances of concern is the imbalance between the rights of the data owner and the responsibility of the data controller. This article answers the problem regarding the urgency of the ratification of the PDP Bill so that it can serve as a guide for the KPU as the election organizer who is responsible for the protection of voter data through the embodiment of the EU GDPR. Through a normative juridical research method with a statutory approach, case approach, and comparative approach, this research produces a solution to strengthen the responsibility of the KPU and at the same time encourage the ratification of the PDP Bill in Indonesia.Keywords: KPU; Voter Data; PDP Bill; EU GDPR.AbstrakKasus bocornya data pemilih tetap pemilihan umum (Pemilu) 2014 mencuat pada Mei 2020 lalu. Rentannya pelanggaran data pribadi tersebut menjadi raison d’etre payung hukum yang secara khusus mengatur perlindungan data pribadi. Di sisi lain, pemerintah terus berupaya menyempurnakan Rancangan Undang-Undang Perlindungan Data Pribadi (PDP). Salah satu substansi yang menjadi perhatian yaitu timpangnya hak pemilik data dengan tanggung jawab pengendali data. Artikel ini menjawab permasalahan mengenai urgensi pengesahan RUU PDP sehingga dapat menjadi pedoman KPU sebagai penyelenggara Pemilu yang bertanggung jawab atas perlindungan data pemilih melalui pengejawantahan EU GDPR. Melalui metode penelitian yuridis normatif dengan pendekatan perundang-undangan, pendekatan kasus, dan pendekatan komparatif. Penelitian ini menghasilkan gagasan solutif untuk memperkuat tanggung jawab KPU serta sekaligus mendorong pengesahan RUU PDP di Indonesia.Kata Kunci: KPU; Data Pemilih; RUU PDP; EU GDPR.
- Published
- 2022
12. Towards Enforcement of the EU GDPR: Enabling Data Erasure
- Author
-
Subhadeep Sarkar, Louis Rilling, Jean-Pierre Banatre, Christine Morin, Design and Implementation of Autonomous Distributed Systems (MYRIADS), Inria Rennes – Bretagne Atlantique, Institut National de Recherche en Informatique et en Automatique (Inria)-Institut National de Recherche en Informatique et en Automatique (Inria)-SYSTÈMES LARGE ÉCHELLE (IRISA-D1), Institut de Recherche en Informatique et Systèmes Aléatoires (IRISA), Université de Bretagne Sud (UBS)-Institut National des Sciences Appliquées - Rennes (INSA Rennes), Institut National des Sciences Appliquées (INSA)-Université de Rennes (UNIV-RENNES)-Institut National des Sciences Appliquées (INSA)-Université de Rennes (UNIV-RENNES)-Institut National de Recherche en Informatique et en Automatique (Inria)-École normale supérieure - Rennes (ENS Rennes)-Centre National de la Recherche Scientifique (CNRS)-Université de Rennes 1 (UR1), Université de Rennes (UNIV-RENNES)-CentraleSupélec-IMT Atlantique Bretagne-Pays de la Loire (IMT Atlantique), Institut Mines-Télécom [Paris] (IMT)-Institut Mines-Télécom [Paris] (IMT)-Université de Bretagne Sud (UBS)-Institut National des Sciences Appliquées - Rennes (INSA Rennes), Institut Mines-Télécom [Paris] (IMT)-Institut Mines-Télécom [Paris] (IMT)-Institut de Recherche en Informatique et Systèmes Aléatoires (IRISA), Institut National des Sciences Appliquées (INSA)-Université de Rennes (UNIV-RENNES)-Institut National des Sciences Appliquées (INSA)-Université de Rennes (UNIV-RENNES)-École normale supérieure - Rennes (ENS Rennes)-Centre National de la Recherche Scientifique (CNRS)-Université de Rennes 1 (UR1), Institut Mines-Télécom [Paris] (IMT)-Institut Mines-Télécom [Paris] (IMT), Institut National de Recherche en Informatique et en Automatique (Inria), DGA Maîtrise de l'information (DGA.MI), Direction générale de l'Armement (DGA), Inria Siège, Université de Rennes (UR)-Institut National des Sciences Appliquées - Rennes (INSA Rennes), Institut National des Sciences Appliquées (INSA)-Institut National des Sciences Appliquées (INSA)-Université de Bretagne Sud (UBS)-École normale supérieure - Rennes (ENS Rennes)-Institut National de Recherche en Informatique et en Automatique (Inria)-CentraleSupélec-Centre National de la Recherche Scientifique (CNRS)-IMT Atlantique (IMT Atlantique), Institut Mines-Télécom [Paris] (IMT)-Institut Mines-Télécom [Paris] (IMT)-Université de Rennes (UR)-Institut National des Sciences Appliquées - Rennes (INSA Rennes), and Institut National des Sciences Appliquées (INSA)-Institut National des Sciences Appliquées (INSA)-Université de Bretagne Sud (UBS)-École normale supérieure - Rennes (ENS Rennes)-CentraleSupélec-Centre National de la Recherche Scientifique (CNRS)-IMT Atlantique (IMT Atlantique)
- Subjects
Computer science ,business.industry ,Data erasure ,020206 networking & telecommunications ,Context (language use) ,02 engineering and technology ,Computer security ,computer.software_genre ,Data modeling ,Personal data privacy ,Internet of Things (IoT) ,Work (electrical) ,General Data Protection Regulation ,EU GDPR ,0202 electrical engineering, electronic engineering, information engineering ,Erasure ,020201 artificial intelligence & image processing ,[INFO]Computer Science [cs] ,[INFO.INFO-ET]Computer Science [cs]/Emerging Technologies [cs.ET] ,[INFO.INFO-DC]Computer Science [cs]/Distributed, Parallel, and Cluster Computing [cs.DC] ,Enforcement ,Internet of Things ,business ,computer - Abstract
International audience; With the emergence of the Internet of Things (IoT),an increasing need for preserving the privacy of personal datahas been realized. In this context, the EU has recently publishedthe general data protection regulation (GDPR), whichensures strengthening of the privacy rights of the data subjectsconcerning their personal data. In this paper, we presentthe importance of having a holistic solution aimed towardsthe enforcement of the GDPR. As a first step towards theenforcement of the GDPR, we present the research challengesin facilitating the erasure of data as per the right to erasure. Wealso propose the envisaged technical solutions to work throughthe challenges.
- Published
- 2018
13. Towards the Adoption of EU General Data Protection Regulation: An Empirical Study of Businesses’ Perception on Privacy and Data Protection
- Author
-
Andita Rahmi Faradina, Dity (author) and Andita Rahmi Faradina, Dity (author)
- Abstract
The EU General Data Protection Regulation (EU GDPR) is about to come in force in May 2018. It poses new queries for both policymakers and businesses. Policymakers want o know how effective the new EU GDPR will be while the businesses would like to know how the EU GDPR should be implemented. To answer that question, empirical studies on how businesses/organizations implement privacy and data protection as well as their perception towards the EU GDPR are needed. This thesis aims to answer the fill this gap by mixed methods. Literature review and interview are exercised to get the current practices, while survey and statistic analyses are done to investigate the organizations' plans to change related to the EU GDPR. The findings are interesting, which include but not limited to the existence of DPO and organizations' high dependency would not limit the organizations' plan to change. Based on the findings, a number of recommendations are formulated for both policymakers and the practitioners, such as the encouragement to designate a DPO, to specify different approach of enforcement by policymaker for different industrial sectors and to be open to having menu of contracts by organizations for a balanced flexibility.
- Published
- 2017
14. Apple CEO Condemns ‘Data-Industrial Complex’.
- Author
-
Schechner, Sam and Peker, Emre
- Subjects
- *
DATA security - Published
- 2018
15. U.S. Websites Go Dark in Europe as GDPR Data Rules Kick In.
- Author
-
Schechner, Sam and Drozdiak, Natalia
- Subjects
- *
COMPUTER crime prevention laws , *COMPUTER crimes - Published
- 2018
Catalog
Discovery Service for Jio Institute Digital Library
For full access to our library's resources, please sign in.