By Barry Cook
Privacy & Group Data Protection Officer
Our journey towards making visa processing more agile and efficient is very much about the ongoing digital transformation that is impacting all industries. This positive development, among other things, cannot be realistically achieved without relying on the collection and processing of data to create knowledge, competencies and capabilities. This collection and processing require a governance oversight to ensure that it’s not used to the detriment of the individual. To this end, we have seen an upsurge in data protection legislation in the last few years.
In fact, properly regulated and controlled data protection practices do not have to jeopardise the digitisation of our industry; on the contrary, they enhance it by maintaining trust and credibility with customers, partners, employees, shareholders and other stakeholders. In short, good data protection practices have a positive effect on the bottom line.
The EU GDPR, General Data Protection Regulation, is an EU regulation (2016/679), designed to harmonise personal data protection laws across the EU member countries, it entered into force on May 25, 2018. It addresses issues of transparency around personal data usage by companies and gives more control to the individual over their personal data. This far-reaching regulation marks a new stage in the development of data privacy practices in Europe.
Eighteen months on, I have narrowed on three selected takeaways from the EU GDPR that I deem most relevant to our practices in the UAE and Saudi Arabia.
With high penalties in place, there is a huge financial risk for companies in case of non-compliance. There are also real risks to reputation or brand image. Therefore, we must take the EU GDPR obligations very seriously, and external validation through standardisation bodies helps organisations ensure that they are on the right track to comply with the EU GDPR.
Equally important is the fact that customers are concerned about where and how their personal data is being captured when using services. Most regulations, including the GDPR, are designed to ensure that personal data that can be linked to an individual are not shared without the permission or knowledge of the individual. We also know that most consumer concerns center around their private information, such as personal pictures and other details.
New regulations, like the GDPR, are a big step towards better-protected data. However, this is still the beginning of the journey. VFS Global is one of the few companies globally that was already able to comply with the requirements of the GDPR when it came into effect in May 2018.
To enable use to be GDPR compliant, we have a 13-point data privacy and protection framework that has over 130 measurable metrics that enables us to monitor data protection across the organisation. This level of monitoring naturally requires an investment in skills and technology to implement and manage such a framework. I Due to a strong senior management commitment and a corporate culture of compliance since inception, that we are today one of the few companies (in any sector) that are easily able to adapt to new data protection legislations that may be introduced in any of the 147 countries we operate in.
Dubai: Mostafa Bin Abdullatif Investments (MBAL Group), has announced the return of Chubbsafes Corporate Golf…
By Vishwanath Mannarakkal P.P. Moideen Koya, the founder and managing director of Koyenco Group, is…
Dubai: Al Islami Foods, a UAE pioneer in the wholesome food products sector and a…
Did you know that the state of your oral health can provide insights into your…
DUBAI: Larsen & Toubro (L&T), the Indian multinational technology, engineering, construction, and financial services conglomerate,…
Dubai, United Arab Emirates; 25 September 2024: Al Islami Foods, a leading provider of halal…