Content deleted Content added
No edit summary |
No edit summary |
||
Line 41:
The proposal for the new regulation is not final yet and discussed controversially. The single set of rules and the removal of administrative requirements are supposed to save money. But critics point out some issues
* The requirement to have a Data Protection Officer (DPO) in companies with more than 250 employees is new for many EU countries and criticized by some for its administrative burden. For other countries like Germany this is lowering the level of data protection since there is already a requirement for a DPO in smaller companies (in Germany > 9 employees).
* The breach notification to the authorities within 24 hours is considered very ambitious
* The GDPR was developed with a focus on social networks and cloud providers, but did not consider requirements for handling employee data sufficiently.
* Data Portability is not seen as a key aspect for data protection, but more a functional requirement for social networks and cloud providers.
|