Security professionals are aware of GDPR, yet under half are preparing for it

Imperva has published the results of a survey on the current state of company preparedness for the  European General Data Protection Regulation (GDPR). The survey of 170 security professionals was taken at RSA 2017, the world’s largest security conference.

  • 6 years ago Posted in
GDPR protects the privacy of European citizens and applies to all businesses that hold and process personal data collected in the European Union, regardless of their industry or location. It becomes effective on May 25, 2018. Organizations are focusing on GDPR compliance because fines for certain violations may be up to the greater of ˆ20 million or four percent of total worldwide annual turnover. Companies with significant revenue could face billions of dollars in fines.
According to the survey, 51 percent of respondents said GDPR would impact their companies, nearly a third of the respondents didn’t see the GDPR regulations impacting them, while 11 percent were unsure if GDPR would impact their companies and 5 percent were not familiar with GDPR.
The survey also showed an overall lack of urgency among the IT professionals surveyed with 43 percent of respondents indicating that they are evaluating or implementing change in preparation for GDPR, 29 percent indicating that they were not preparing, and another 28 percent signifying that they were unaware of specific preparations.
“U.S. companies should be evaluating the impact GDPR will have on their data practices, given the major fines for non-compliance,” said Terry Ray, chief product strategist at Imperva. 
“Companies need to begin the GDPR legwork now by documenting how personal data is collected and processed in their organizations. From what we’ve seen in working with our clients on GDPR readiness, the projects are complex and involve multiple teams, technologies and systems.”
In asking survey respondents about who is driving GDPR compliance in their organization, 49 percent of survey respondents cited their organization’s legal department, while 8 percent said the IT department is managing the process.
Research shows ‘game needs to be changed,’ with security innovation years behind that of the...
Node4 has released its Mid-Market IT Priorities Report 2021. The independent report reveals that...
Atos has launched Atos OneCloud Sovereign Shield, a set of solutions, methodologies, and...
New distribution agreement set to bolster Westcon-Comstor’s Zero Trust offering in more markets...
Research from Avast has found that employees in almost a third (31%) of Small and Medium...
This year, over half of MSPs or their end customers have been attacked by ransomware but only 53%...
Trend Micro has published new research revealing that 90% of IT decision makers claim their...
Cyber consultants call on businesses to act now, or risk budgets shrinking further in ‘real...