{"id":8178,"date":"2018-08-30T20:57:08","date_gmt":"2018-08-30T20:57:08","guid":{"rendered":"https:\/\/www.naylor.com\/associationadviser\/?p=8178"},"modified":"2020-01-15T15:17:30","modified_gmt":"2020-01-15T15:17:30","slug":"how-to-tell-if-gdpr-applies-to-you","status":"publish","type":"post","link":"https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/","title":{"rendered":"How to Tell If GDPR Applies to You"},"content":{"rendered":"<p>It seems as if each day that passes we are hearing about another cyber-attack, or some sort of hacking operation going on having to do with our personal information being stolen. This has become a real important issue for a lot of citizens \u2013 and organizations \u2013 that never thought it would be a problem for them. Many of us have probably heard about the General Data Protection Regulation (GDPR) in the news lately, but not looked into what it actually was or meant. The GDPR becoming effective earlier this year is a big deal; not only for those in Europe, but for those of us in the U.S. as well. The GDPR is the new regulation put into effect by the European Union (EU) that regulates the processing by a company or organization, or any individual of personal data relating to individuals in the EU.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-large wp-image-7889\" src=\"https:\/\/www.naylor.com\/associationadviser\/wp-content\/uploads\/sites\/2\/2018\/04\/European-Union-Flag-1024x576.jpg\" alt=\"European Union Flag\" width=\"640\" height=\"360\" srcset=\"https:\/\/www.naylor.com\/associationadviser\/wp-content\/uploads\/sites\/2\/2018\/04\/European-Union-Flag-1024x576.jpg 1024w, https:\/\/www.naylor.com\/associationadviser\/wp-content\/uploads\/sites\/2\/2018\/04\/European-Union-Flag-300x169.jpg 300w, https:\/\/www.naylor.com\/associationadviser\/wp-content\/uploads\/sites\/2\/2018\/04\/European-Union-Flag-768x432.jpg 768w, https:\/\/www.naylor.com\/associationadviser\/wp-content\/uploads\/sites\/2\/2018\/04\/European-Union-Flag.jpg 1280w\" sizes=\"auto, (max-width: 640px) 100vw, 640px\" \/><\/p>\n<p>One might read this article and ask, \u201cWhy does this concern me if it is an EU regulation?\u201d Which is a valid question, but one I will answer. The passing of the GDPR is very important to individuals and organizations the U.S. as well, as it will start to become the new \u201cnorm\u201d of laws regarding personal data as it pertains to people <em>located<\/em> in the EU, but not necessarily <em>based out of<\/em> the EU.<\/p>\n<p>Already, California has enacted their own privacy law, the California Consumer Privacy Act of 2019 (CCPA). The CCPA is actually broader and mandates several additional compliance requirements not imposed by the GDPR. These regulations put forth by both the GDPR and CCPA grant individuals the right to access, delete, transfer and object to the sale of their personal information.<\/p>\n<p>Being in the insurance industry and dealing a lot with cyber liability policies (and claims), I feel that the passing of GDPR and CCPA in the U.S. is just the beginning of the onslaught of more strict regulations, enforcement and hefty penalties we will begin to see take place in our country. In 2017 alone, take a look at these high-profile data breaches:<\/p>\n<ul>\n<li>PayPal \u2013 1,600,000 accounts hacked;<\/li>\n<li>NSA data breach \u2013 100GB of top secret data;<\/li>\n<li>California voter personal information \u2013 19,264,123 records breached;<\/li>\n<li>Uber \u2013 paid hackers to delete stolen records of 57 million individuals and;<\/li>\n<li>Equifax data breach of 147,900,000 individuals.<\/li>\n<\/ul>\n<p>These are just some of the breaches! The real question with the GDPR is &#8211; who does this affect? The answer is simple and direct; the GDPR applies to <em>not only<\/em> organizations located within the EU , but it also apples to any location outside of the EU if they offer goods or services to EU individuals. In other words, regardless of your location, if you are processing or holding the personal data of individuals residing in the European Union, the GDPR applies to you. It is important to address the fact that penalties for non-compliance are stiff. In fact, organizations can be fined up to 4% of their annual global turnover. Already, lawsuits against Facebook (\u20ac3.9 billion) and Google (\u20ac3.7 billion) have been filed since the enforcement of GDPR.<\/p>\n<p>This is definitely something that we in the association world will want to pay close attention to and make sure we are up to speed on. I think we will start to see more requirements for organizations to take the necessary steps for them to be compliant.<\/p>\n<p>So the real question is, <strong>do you now or have you ever captured any personal data of an individual in the EU?<\/strong><\/p>\n<div class=\"clear\"><\/div><div class=\"author-info row\"><div class=\"col col-3\"><img decoding=\"async\" class=\"author-img\" src=\"http:\/\/www.naylor.com\/wp-content\/uploads\/2018\/04\/Brian-Lynch-AMes-Gough-headshot.jpeg\" alt=\"\" \/><\/div><div class=\"col col-9\"><div class=\"author-info-content\"><h3>About The Author<\/h3>\n\t\t\t<\/p>\n<p><strong><a href=\"mailto:blynch@amesgough.com?subject=Association Adviser article: Event Cancellation Insurance\">Brian C. Lynch<\/a><\/strong> is a Client Executive at Ames &amp; Gough and the leader of the association\/non-profit division, located in the Washington, DC office. He joined Ames &amp; Gough in 2016, having more than eight years of insurance industry experience and bringing an in-depth understanding of executive liability exposures and coverages, providing insurance placement, renewal planning, carrier negotiations and related client support services. Previously, Brian was a vice president with Boston Insurance Brokerage, Inc.\u00a0 Brian holds a Management Liability Insurance Specialist (MLIS) designation. Additionally, Brian is a consultant member of ASAE as well as an ASAE Young Professional member. Brian earned a B.A. degree in broadcast communications from Elon University in 2006.<\/p>\n<p>\n\t\t\t<\/div><\/div><\/div>\n","protected":false},"excerpt":{"rendered":"<p>Many of us have probably heard about the General Data Protection Regulation (GDPR) in the news lately, but not looked into what it actually was or meant. GDPR regulates the processing of personal data. But if you&#8217;re not in the EU, does it still apply?<\/p>\n","protected":false},"author":157,"featured_media":7889,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[12,4,6],"tags":[1438,1439,1590],"class_list":["post-8178","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-marketing-communications","category-membership","category-technology","tag-gdpr","tag-general-data-protection-regulation","tag-government-affairs"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v21.4 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>How to Tell If GDPR Applies to You - Association Adviser<\/title>\n<meta name=\"description\" content=\"Many of us have probably heard about the General Data Protection Regulation (GDPR) in the news lately, but not looked into what it actually was or meant. GDPR regulates the processing of personal data. But if you&#039;re not in the EU, does it still apply?\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"How to Tell If GDPR Applies to You - Association Adviser\" \/>\n<meta property=\"og:description\" content=\"Many of us have probably heard about the General Data Protection Regulation (GDPR) in the news lately, but not looked into what it actually was or meant. GDPR regulates the processing of personal data. But if you&#039;re not in the EU, does it still apply?\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/\" \/>\n<meta property=\"og:site_name\" content=\"Association Adviser\" \/>\n<meta property=\"article:published_time\" content=\"2018-08-30T20:57:08+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-01-15T15:17:30+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.naylor.com\/associationadviser\/wp-content\/uploads\/sites\/2\/2018\/04\/European-Union-Flag.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1280\" \/>\n\t<meta property=\"og:image:height\" content=\"720\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Brian Lynch\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Brian Lynch\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/\",\"url\":\"https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/\",\"name\":\"How to Tell If GDPR Applies to You - Association Adviser\",\"isPartOf\":{\"@id\":\"https:\/\/www.naylor.com\/associationadviser\/#website\"},\"datePublished\":\"2018-08-30T20:57:08+00:00\",\"dateModified\":\"2020-01-15T15:17:30+00:00\",\"author\":{\"@id\":\"https:\/\/www.naylor.com\/associationadviser\/#\/schema\/person\/c8149ebf0efebd6775a346e3d42929da\"},\"description\":\"Many of us have probably heard about the General Data Protection Regulation (GDPR) in the news lately, but not looked into what it actually was or meant. GDPR regulates the processing of personal data. But if you're not in the EU, does it still apply?\",\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/\"]}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.naylor.com\/associationadviser\/#website\",\"url\":\"https:\/\/www.naylor.com\/associationadviser\/\",\"name\":\"Association Adviser\",\"description\":\"Leadership Strategies &amp; Best Practices for Association Professionals\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.naylor.com\/associationadviser\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.naylor.com\/associationadviser\/#\/schema\/person\/c8149ebf0efebd6775a346e3d42929da\",\"name\":\"Brian Lynch\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.naylor.com\/associationadviser\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/c78ac270f0d913aa1533f120fd2f418f1145133175dc603d8f688199bca7f2e5?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/c78ac270f0d913aa1533f120fd2f418f1145133175dc603d8f688199bca7f2e5?s=96&d=mm&r=g\",\"caption\":\"Brian Lynch\"},\"sameAs\":[\"http:\/\/amesgough.com\"],\"url\":\"https:\/\/www.naylor.com\/associationadviser\/author\/brianlynch\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"How to Tell If GDPR Applies to You - Association Adviser","description":"Many of us have probably heard about the General Data Protection Regulation (GDPR) in the news lately, but not looked into what it actually was or meant. GDPR regulates the processing of personal data. But if you're not in the EU, does it still apply?","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/","og_locale":"en_US","og_type":"article","og_title":"How to Tell If GDPR Applies to You - Association Adviser","og_description":"Many of us have probably heard about the General Data Protection Regulation (GDPR) in the news lately, but not looked into what it actually was or meant. GDPR regulates the processing of personal data. But if you're not in the EU, does it still apply?","og_url":"https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/","og_site_name":"Association Adviser","article_published_time":"2018-08-30T20:57:08+00:00","article_modified_time":"2020-01-15T15:17:30+00:00","og_image":[{"width":1280,"height":720,"url":"https:\/\/www.naylor.com\/associationadviser\/wp-content\/uploads\/sites\/2\/2018\/04\/European-Union-Flag.jpg","type":"image\/jpeg"}],"author":"Brian Lynch","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Brian Lynch","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/","url":"https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/","name":"How to Tell If GDPR Applies to You - Association Adviser","isPartOf":{"@id":"https:\/\/www.naylor.com\/associationadviser\/#website"},"datePublished":"2018-08-30T20:57:08+00:00","dateModified":"2020-01-15T15:17:30+00:00","author":{"@id":"https:\/\/www.naylor.com\/associationadviser\/#\/schema\/person\/c8149ebf0efebd6775a346e3d42929da"},"description":"Many of us have probably heard about the General Data Protection Regulation (GDPR) in the news lately, but not looked into what it actually was or meant. GDPR regulates the processing of personal data. But if you're not in the EU, does it still apply?","inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.naylor.com\/associationadviser\/how-to-tell-if-gdpr-applies-to-you\/"]}]},{"@type":"WebSite","@id":"https:\/\/www.naylor.com\/associationadviser\/#website","url":"https:\/\/www.naylor.com\/associationadviser\/","name":"Association Adviser","description":"Leadership Strategies &amp; Best Practices for Association Professionals","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.naylor.com\/associationadviser\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.naylor.com\/associationadviser\/#\/schema\/person\/c8149ebf0efebd6775a346e3d42929da","name":"Brian Lynch","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.naylor.com\/associationadviser\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/c78ac270f0d913aa1533f120fd2f418f1145133175dc603d8f688199bca7f2e5?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/c78ac270f0d913aa1533f120fd2f418f1145133175dc603d8f688199bca7f2e5?s=96&d=mm&r=g","caption":"Brian Lynch"},"sameAs":["http:\/\/amesgough.com"],"url":"https:\/\/www.naylor.com\/associationadviser\/author\/brianlynch\/"}]}},"_links":{"self":[{"href":"https:\/\/www.naylor.com\/associationadviser\/wp-json\/wp\/v2\/posts\/8178","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.naylor.com\/associationadviser\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.naylor.com\/associationadviser\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.naylor.com\/associationadviser\/wp-json\/wp\/v2\/users\/157"}],"replies":[{"embeddable":true,"href":"https:\/\/www.naylor.com\/associationadviser\/wp-json\/wp\/v2\/comments?post=8178"}],"version-history":[{"count":0,"href":"https:\/\/www.naylor.com\/associationadviser\/wp-json\/wp\/v2\/posts\/8178\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.naylor.com\/associationadviser\/wp-json\/wp\/v2\/media\/7889"}],"wp:attachment":[{"href":"https:\/\/www.naylor.com\/associationadviser\/wp-json\/wp\/v2\/media?parent=8178"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.naylor.com\/associationadviser\/wp-json\/wp\/v2\/categories?post=8178"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.naylor.com\/associationadviser\/wp-json\/wp\/v2\/tags?post=8178"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}