Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking & Finance Review

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2025 GBAF Publications Ltd - All Rights Reserved.

    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Finance > THE GENERAL DATA PROTECTION REGULATION SPELLS TROUBLE FOR FINANCE
    Finance

    THE GENERAL DATA PROTECTION REGULATION SPELLS TROUBLE FOR FINANCE

    THE GENERAL DATA PROTECTION REGULATION SPELLS TROUBLE FOR FINANCE

    Published by Gbaf News

    Posted on March 28, 2017

    Featured image for article about Finance

    Ganesh Raman, Account Director at data science and marketing services company Profusion, explains how the General Data Protection Regulation affects banking and finance.

    Trust and the finance industry have been tied together since the very first bank opened its doors. That trust will soon come under pressure thanks to the EU’s General Data Protection Regulation (GDPR) which governs how organisations must use, store and protect consumer data. A large chunk of the Regulation surrounds customer consent for their data use. It’s no longer good enough to simply pre-fill in a checkbox or assume customer consent, under GDPR, all organisations must explicitly gain consent for each and every use of personal data.

    The consequences for organisations in breach of GDPR are dire, with fines of up to €20million or 4% of global revenue, whichever is greater. Plus, there’ll be the associated loss of consumer confidence in any case of breaching GDPR. For finance organisations, that loss of trust will be catastrophic. Nobody will allow their money to be looked after by an unreliable source and the potential brand damage and loss of revenue could make that €20million fine look like pocket change. With such large consequences, and following many high profile data leaks, any GDPR breach is also likely to hit the headlines, further damaging your reputation.

    The type of data financial institutions hold on customer is also highly sensitive. Meaning that any leak or lapse in security is likely to be hit with the hardest penalties.

    Despite Brexit, UK companies will still have to adhere to GDPR.Any organisation dealing with European citizens’ data will have to comply. It doesn’t matter where your company is based in the world, if you want to do business with Europe, GDPR is going to apply to you.

    Apart from consent, the Regulation also details how customer data is to be stored and accessed. Data will have to be kept in a common electronic format, a format that is widely used in the industry by many different data management companies. This is because a customer will now have the right to approach a company and request that their data is transferred to another. This has potential ramifications for insurance in particular, as customers will be easily able to transfer details from one to another and shop around for the best deals.

    Thanks to a spate of data hack and other privacy issues, the way data is stored has recently come to the public’s attention. In terms of your data architecture, the Regulation states that your storage systems must be built with privacy and security designed into its foundations.

    Under GDPR, before storing any data, you will have to obtain express permission for it to be stored and detail exactly what the data will be used for and how long it will be kept. The way you explain this to your customers must be simple and easy for them to understand, and also age appropriate, as the Regulation also details that the consent of any minors and their parents/guardians must be obtained before you use their data.

    Companies will have to tighten up their data governance and notification processes. In the event of a breach, companies will have to notify data protection authorities when the leak is likely to have a detrimental impact on the people involved. Likewise, individuals who are affected will have to be notified. This has to be done within 72 hours, otherwise you’ll face a fine.

    Companies with good data governance and that know where their data has come from, where it is stored and what it is being used for, will find the route to becoming GDPR compliant far easier than those who don’t. Nevertheless, many companies will have gaps in their data governance and storage that will have to be plugged before the May 2018 deadline.

    Likewise, those with data governance and management procedures that meet GDPR standards will still have to do some legwork in educating their customers and employees. Don’t misjudge the time this will potentially take. Many people don’t engage with the first few messages companies send to them, so you’ll have to create an entire marketing and internal comms strategy around GDPR. It’s worth using a mix of different channels and mediums to get your message across. TV advertising, OOH media and online advertising would be a good way to get blanket coverage of all your customers, educating them on the incoming Regulation and what it means for them. Targeted email marketing and prompts in-branch (where appropriate) will be a good way to zero in on the customers you need to obtain consent from.

    In terms of internal comms, all staff will have to have an idea of what constitutes personal data, and they should also be able to identify a data breach and know the correct procedures. For businesses with global offices, getting everyone up to speed is no small undertaking, so start planning this now. There are also some external organisations that offer specialist GDPR training for employees.

    Ultimately, GDPR will represent a step change for any organisation that handles consumer data. It brings about a change in the relationship organisations have with the public, whereas ownership of data has previously been a grey area, the Regulation stipulates that consumers are now owners of their data, and you are custodians of it. The Regulation brings in great responsibility on organisations to treat personal data correctly, with large penalties for those who fail to meet GDPR standards. Many companies are going to have to make significant changes across the entire organisation, from HR and training, to marketing and IT. The time these changes will take should not be underestimated. In other words, to hit that May 2018 deadline, many of you are already running late.

    Ganesh Raman, Account Director at data science and marketing services company Profusion, explains how the General Data Protection Regulation affects banking and finance.

    Trust and the finance industry have been tied together since the very first bank opened its doors. That trust will soon come under pressure thanks to the EU’s General Data Protection Regulation (GDPR) which governs how organisations must use, store and protect consumer data. A large chunk of the Regulation surrounds customer consent for their data use. It’s no longer good enough to simply pre-fill in a checkbox or assume customer consent, under GDPR, all organisations must explicitly gain consent for each and every use of personal data.

    The consequences for organisations in breach of GDPR are dire, with fines of up to €20million or 4% of global revenue, whichever is greater. Plus, there’ll be the associated loss of consumer confidence in any case of breaching GDPR. For finance organisations, that loss of trust will be catastrophic. Nobody will allow their money to be looked after by an unreliable source and the potential brand damage and loss of revenue could make that €20million fine look like pocket change. With such large consequences, and following many high profile data leaks, any GDPR breach is also likely to hit the headlines, further damaging your reputation.

    The type of data financial institutions hold on customer is also highly sensitive. Meaning that any leak or lapse in security is likely to be hit with the hardest penalties.

    Despite Brexit, UK companies will still have to adhere to GDPR.Any organisation dealing with European citizens’ data will have to comply. It doesn’t matter where your company is based in the world, if you want to do business with Europe, GDPR is going to apply to you.

    Apart from consent, the Regulation also details how customer data is to be stored and accessed. Data will have to be kept in a common electronic format, a format that is widely used in the industry by many different data management companies. This is because a customer will now have the right to approach a company and request that their data is transferred to another. This has potential ramifications for insurance in particular, as customers will be easily able to transfer details from one to another and shop around for the best deals.

    Thanks to a spate of data hack and other privacy issues, the way data is stored has recently come to the public’s attention. In terms of your data architecture, the Regulation states that your storage systems must be built with privacy and security designed into its foundations.

    Under GDPR, before storing any data, you will have to obtain express permission for it to be stored and detail exactly what the data will be used for and how long it will be kept. The way you explain this to your customers must be simple and easy for them to understand, and also age appropriate, as the Regulation also details that the consent of any minors and their parents/guardians must be obtained before you use their data.

    Companies will have to tighten up their data governance and notification processes. In the event of a breach, companies will have to notify data protection authorities when the leak is likely to have a detrimental impact on the people involved. Likewise, individuals who are affected will have to be notified. This has to be done within 72 hours, otherwise you’ll face a fine.

    Companies with good data governance and that know where their data has come from, where it is stored and what it is being used for, will find the route to becoming GDPR compliant far easier than those who don’t. Nevertheless, many companies will have gaps in their data governance and storage that will have to be plugged before the May 2018 deadline.

    Likewise, those with data governance and management procedures that meet GDPR standards will still have to do some legwork in educating their customers and employees. Don’t misjudge the time this will potentially take. Many people don’t engage with the first few messages companies send to them, so you’ll have to create an entire marketing and internal comms strategy around GDPR. It’s worth using a mix of different channels and mediums to get your message across. TV advertising, OOH media and online advertising would be a good way to get blanket coverage of all your customers, educating them on the incoming Regulation and what it means for them. Targeted email marketing and prompts in-branch (where appropriate) will be a good way to zero in on the customers you need to obtain consent from.

    In terms of internal comms, all staff will have to have an idea of what constitutes personal data, and they should also be able to identify a data breach and know the correct procedures. For businesses with global offices, getting everyone up to speed is no small undertaking, so start planning this now. There are also some external organisations that offer specialist GDPR training for employees.

    Ultimately, GDPR will represent a step change for any organisation that handles consumer data. It brings about a change in the relationship organisations have with the public, whereas ownership of data has previously been a grey area, the Regulation stipulates that consumers are now owners of their data, and you are custodians of it. The Regulation brings in great responsibility on organisations to treat personal data correctly, with large penalties for those who fail to meet GDPR standards. Many companies are going to have to make significant changes across the entire organisation, from HR and training, to marketing and IT. The time these changes will take should not be underestimated. In other words, to hit that May 2018 deadline, many of you are already running late.

    Related Posts
    Germany removes dividend ban for Uniper, paving way for IPO
    Germany removes dividend ban for Uniper, paving way for IPO
    Golden Goose gets new majority owner as China's HSG buys stake from Permira
    Golden Goose gets new majority owner as China's HSG buys stake from Permira
    ECB's Escriva expects monetary policy to remain steady
    ECB's Escriva expects monetary policy to remain steady
    French government to appeal court ruling on Shein
    French government to appeal court ruling on Shein
    Russian central bank governor Nabiullina speaks after rate cut
    Russian central bank governor Nabiullina speaks after rate cut
    Strategy and bitcoin-buying firms face wider exclusion from stock indexes
    Strategy and bitcoin-buying firms face wider exclusion from stock indexes
    Carnival Corp sees strong annual profit, resumes dividend as bookings rise
    Carnival Corp sees strong annual profit, resumes dividend as bookings rise
    UK stocks muted near multi-week highs as retail sales, consumer sentiment sag
    UK stocks muted near multi-week highs as retail sales, consumer sentiment sag
    Italy sells digital payment unit PagoPA to Poste, state mint for up to 500 million euros
    Italy sells digital payment unit PagoPA to Poste, state mint for up to 500 million euros
    Court in Brazil's Minas Gerais slaps down Nestle copyright lawsuit
    Court in Brazil's Minas Gerais slaps down Nestle copyright lawsuit
    German court jails man for drugging, raping wife, posting assaults online
    German court jails man for drugging, raping wife, posting assaults online
    UniCredit issues its first tokenised structured note
    UniCredit issues its first tokenised structured note

    Why waste money on news and opinions when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    More from Finance

    Explore more articles in the Finance category

    UK competition watchdog to probe AB Foods' Hovis purchase

    UK competition watchdog to probe AB Foods' Hovis purchase

    Trump said he has no bigger healthcare plans: Obamacare will 'repeal itself'

    Trump said he has no bigger healthcare plans: Obamacare will 'repeal itself'

    Analysis-Spanish consumer credit hits near 18-year high on economic boom

    Analysis-Spanish consumer credit hits near 18-year high on economic boom

    NATO sees positive signs Czech ammunition scheme for Kyiv may continue

    NATO sees positive signs Czech ammunition scheme for Kyiv may continue

    Maersk tests Red Sea route as Gaza ceasefire offers hope

    Maersk tests Red Sea route as Gaza ceasefire offers hope

    Russia's tax proceeds from oil may fall in January to the lowest since 2022, Reuters calculations show

    Russia's tax proceeds from oil may fall in January to the lowest since 2022, Reuters calculations show

    French court rules against Shein suspension over sex doll sales, government to appeal

    French court rules against Shein suspension over sex doll sales, government to appeal

    No drop in military aid to Kyiv since US policy shift, NATO official says

    No drop in military aid to Kyiv since US policy shift, NATO official says

    How is Britain's government doing on its housing targets?

    How is Britain's government doing on its housing targets?

    Factbox-What are shipping companies' plans for return to Suez Canal?

    Factbox-What are shipping companies' plans for return to Suez Canal?

    Big central banks signal rate-cut cycle is ending

    Big central banks signal rate-cut cycle is ending

    Embraer's Eve makes maiden flight of 'flying car' prototype

    Embraer's Eve makes maiden flight of 'flying car' prototype

    View All Finance Posts
    Previous Finance PostWhat new £1 coin?
    Next Finance PostEXCHANGE BECOMES INSTITUTIONALISED: FINTECH DEBITOS OPENS DEBT MARKET FOR TRANSACTION ADVISORS