GDPR commentary from Stephen Cavey, Ground Labs.

To mark the 4 year anniversary of the GDPR tomorrow - Wednesday, 25th May, the GDPR commentary from Stephen Cavey, Co-Founder, Co-CEO & Chief Evangelist, Ground Labs.:

“The GDPR is the most significant privacy legislation that organisations globally have faced. The regulations have significantly raised the bar in how organisations are held accountable for their personal data collection and handling practices with fines for violations surpassing double-digits. Likewise, it has forced organisations to better understand how their customers’ data is collected, where it is stored, and whether they are selling it to third parties. Furthermore, under the GDPR organisations that collect and handle personal information must prepare for individuals to invoke their right to opt-out of data sharing practices or request their data to be removed (forgotten).

Since its inception in 2018, we have gained valuable insight into how the GDPR is being enforced. One discrepancy, though, is the impact on large and small businesses. Large businesses can handle the challenges of privacy, security and regulation compliance because they have access to the resources and can implement functions to address these regulatory requirements. In a smaller organisation, this is not the case. Small businesses have to rely on outsourcing to fix the problem, which can be costly and time-consuming.

Data protection is a journey, not a destination. As these regulations grow in scale and complexity, organisations of all sizes will continue exploring ways to meet these requirements without hindering business success.”

Articles similaires

Opinion

10 September 2026

Cyberattack encrypts German utility’s IT systems serving critical infrastructure – experts weigh in

A cyberattack that began September 1st has encrypted the central IT systems of Stadtwerke (…)

Opinion

9 September 2026

Are AI agents the next insider threat?

In a new interview published in Axios, Bugcrowd CEO Dave Gerry said that AI agents aren’t just (…)

Opinion

4 September 2026

CISA cuts critical infrastructure security services, concerns grow over the shrinking agency - Expert Comments

CISA is ending six free cybersecurity assessment programs used by critical infrastructure (…)