{"id":97,"date":"2019-08-06T11:34:44","date_gmt":"2019-08-06T11:34:44","guid":{"rendered":"https:\/\/thamessecurityshredding.com\/blog\/?p=97"},"modified":"2023-07-28T05:04:30","modified_gmt":"2023-07-28T05:04:30","slug":"data-protection-principles","status":"publish","type":"post","link":"https:\/\/thamessecurityshredding.com\/blog\/data-protection-principles\/","title":{"rendered":"Data Protection Principles"},"content":{"rendered":"<p>The General Data Protection Regulation (GDPR) is a set of rules, standards, principles that guide and regulate data privacy and exportation, within and outside the European Union.<\/p>\n<p>What this implies is that companies within the jurisdiction of the European Union and the European Economic Area must list out procedures carefully aligned with those represented in the data protection principles.<\/p>\n<p>Primarily, the GDPR is the host for these data protection principles and contains in itself, requirements regarding individuals&amp;#39; data.<\/p>\n<p>Thus, information such as name, cookie data, social security number, etc. would have to stay hidden according to the data protection act principles.<\/p>\n<h2>The Importance of Data Protection Regulation<\/h2>\n<p>The data protection act principles are the centre of the GDPR. Non-compliance could expose data to fraud, scams, etc. Not only that, the company would be at risk of facing severe consequences that could be damaging to it, and that\u2019s some of the internal problems. External punishments coming from the EEA are inevitable. Fines and a possible jail term cannot be escaped. All these can be avoided if one complies strictly by the GDPR.<\/p>\n<p>At Thames Security Shredding, we know the A-Zs of the game, and that\u2019s why you can trust us with your data.<\/p>\n<p><img decoding=\"async\" class=\"alignnone size-full wp-image-99\" src=\"https:\/\/thamessecurityshredding.com\/blog\/wp-content\/uploads\/2019\/08\/gdpr-3438451_960_720.jpg\" alt=\"\" width=\"100%\" srcset=\"https:\/\/thamessecurityshredding.com\/blog\/wp-content\/uploads\/2019\/08\/gdpr-3438451_960_720.jpg 960w, https:\/\/thamessecurityshredding.com\/blog\/wp-content\/uploads\/2019\/08\/gdpr-3438451_960_720-300x180.jpg 300w, https:\/\/thamessecurityshredding.com\/blog\/wp-content\/uploads\/2019\/08\/gdpr-3438451_960_720-768x461.jpg 768w\" sizes=\"(max-width: 960px) 100vw, 960px\" \/><\/p>\n<h2>The Eight Principles of Data Protection<\/h2>\n<p>The data protection act 1998 principles are very much relevant in contemporary times. Though revised with the official legislation of the GDPR in 2018, not much has changed. Nonetheless, here\u2019s an overview of these principles.<\/p>\n<p>Data Protection;<\/p>\n<h3>\u2022 Must be lawful<\/h3>\n<p>&nbsp;<\/p>\n<p>Under the legal policy, organizations must be fair and transparent in the collection and retaining of data. They must be able to give an account of the reason why the data was collected, and then of what use the individuals\u2019 data is needed.<\/p>\n<p>In more formal terms, data should be as detailed and precise as possible.<\/p>\n<h3>\u2022 Must be stipulated for specific purposes<\/h3>\n<p>&nbsp;<\/p>\n<p>This principle posits that personal data obtained by any organization must have a particular purpose for which it was created, in the first place. Like the legal principle, this policy further implies and advocates for data legitimacy and a fair process at that.<\/p>\n<h3>\u2022 Data must be adequate and relevant<\/h3>\n<p>&nbsp;<\/p>\n<p>The emphasis here is on relevance, limitation, and adequacy. Organizations are compelled to only obtain and withhold information that is relevant to them. Minimization is the ultimate goal for this one. If a customer unsubscribes from the company\u2019s services, his data should be reduced to the barest minimum.<\/p>\n<h3>\u2022 Data must be accurate<\/h3>\n<p>&nbsp;<\/p>\n<p>Companies should ensure that the information in their possession is always up to date. And when updated, all roads to the previous data should be blocked. For instance, when a customer updates his contact details, the company should not continue to use the old data. Instead, they should work with the new information and keep the same for future uses\/references.<\/p>\n<hr \/>\n<h3 style=\"text-align: center;\">For <a href=\"https:\/\/thamessecurityshredding.com\/\">Security Shredding<\/a>: Call <a href=\"tel:01268287174\">01268 287 174<\/a><\/h3>\n<hr \/>\n<h3>\u2022 Data storage must be limited<\/h3>\n<p>&nbsp;<\/p>\n<p>Based on this, organizations should ensure that data is not stored, longer than necessary. What this rule buttress is on time, real-time data. Rather than store unnecessary data, this principle provides that organizations destroy\/delete them. Making sure that data records are stored adequately, in place and understood, is what this principle stands for.<\/p>\n<h3>\u2022 Data must be secured<\/h3>\n<p>&nbsp;<\/p>\n<p>With the retention of personal data, it\u2019s only right for security to be top-notch. This principle stresses the protection of data. It postulates that organizations should set up systems aimed at securing physical and technical data. On this, organizations should take up the full responsibilities of hiring trained personnel skilled in cybersecurity. More so, the data of those who have access to information should themselves be assessed.<\/p>\n<h3>\u2022 Must be accountable and responsible<\/h3>\n<p>&nbsp;<\/p>\n<p>The GDPR expects that every organization should be directly responsible for their data subjects. If a customer were to request for specific data, the organization should be able to provide such. On the other hand, if the customer asks for his data to be deleted, then the same should be granted. However, customers only have the right to access information relevant to them.<\/p>\n<h3>\u2022 Data must not be transferred<\/h3>\n<p>&nbsp;<\/p>\n<p>A principle that cannot be underemphasized is the transfer of data. Data must not be transferred to other countries outside the EEA and the EU. Inside the EEA, it is permissible. However, other countries should not access data relevant to the EU domain.<\/p>\n<h3>New Changes under the GDPR<\/h3>\n<p>&nbsp;<\/p>\n<p>\u2022 Conducting a background check on employees should be subject to the law.<br \/>\n\u2022 There\u2019s an option of the \u2018right to be forgotten,\u2019 should an individual request for his data to be removed from a company\u2019s database.<br \/>\n\u2022 If data is to be sent out of the EEA, the customer should consent to it.<\/p>\n<h3>How Thames Security can Help<\/h3>\n<p>&nbsp;<\/p>\n<p>At Thames Security Shredding, we know the A-Zs of the game, and that\u2019s why you can trust us with your data. We stand for data protection and privacy, so your data remains unknown to third parties.<\/p>\n<hr \/>\n<p><img decoding=\"async\" class=\"alignnone size-full wp-image-107\" src=\"https:\/\/thamessecurityshredding.com\/blog\/wp-content\/uploads\/2019\/08\/Data-Protection-Principles.jpg\" alt=\"Data-Protection-Principles\" width=\"100%\" srcset=\"https:\/\/thamessecurityshredding.com\/blog\/wp-content\/uploads\/2019\/08\/Data-Protection-Principles.jpg 848w, https:\/\/thamessecurityshredding.com\/blog\/wp-content\/uploads\/2019\/08\/Data-Protection-Principles-138x300.jpg 138w, https:\/\/thamessecurityshredding.com\/blog\/wp-content\/uploads\/2019\/08\/Data-Protection-Principles-768x1670.jpg 768w, https:\/\/thamessecurityshredding.com\/blog\/wp-content\/uploads\/2019\/08\/Data-Protection-Principles-471x1024.jpg 471w\" sizes=\"(max-width: 848px) 100vw, 848px\" \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The General Data Protection Regulation (GDPR) is a set of rules, standards, principles that guide and regulate data privacy and exportation, within and outside the European Union. What this implies is that companies within the jurisdiction of the European Union and the European Economic Area must list out procedures carefully&#8230;<\/p>\n","protected":false},"author":1,"featured_media":100,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[11,9,12],"class_list":["post-97","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-data-protection","tag-data-protection","tag-data-protection-principle","tag-security-shredding"],"_links":{"self":[{"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/posts\/97"}],"collection":[{"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/comments?post=97"}],"version-history":[{"count":8,"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/posts\/97\/revisions"}],"predecessor-version":[{"id":109,"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/posts\/97\/revisions\/109"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/media\/100"}],"wp:attachment":[{"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/media?parent=97"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/categories?post=97"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/thamessecurityshredding.com\/blog\/wp-json\/wp\/v2\/tags?post=97"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}