Essential facts about GDPR

Please note: This item is from our archives and was published in 2018. It is provided for historical reference. The content may be out of date and links may no longer function.

What: Comprehensive regulation applicable to businesses that handle personal data of EU citizens. The General Data Protection Regulation (GDPR) replaces the EU’s 1995 Data Protection Directive.

Who: GDPR will affect companies all over the world, not just those in the EU. Some entities, depending on the amount and type of data they collect from EU citizens, will be required to appoint a data protection officer. GDPR also establishes requirements regarding notification of data breaches and obtaining consent from customers. Failure to comply could trigger large financial penalties: €20 million or 4% of annual global revenue.

When: GDPR becomes enforceable 25 May 2018.

Up Next

Are finance leaders moving too fast on agentic AI?

By Bryan Strickland
July 22, 2026
While most senior finance leaders in a recent survey say they’re under career pressure to demonstrate a return on agentic AI investment, the ROI may be slowed by an emphasis on speed.
Advertisement

LATEST STORIES

Are finance leaders moving too fast on agentic AI?

CIMA calls for skills and tax reset by UK government

IASB opens consultation on proposed taxonomy update

5 mistakes companies make on AI policy

Fragmented talent data comes at a high cost

Advertisement
Read the latest FM digital edition, exclusively for CIMA members and AICPA members who hold the CGMA designation.
Advertisement

Related Articles

5 mistakes companies make on AI policy