6 ms·
The idea would be to align the commercial interests of US cloud service providers with the privacy interests of EU customers. From the EU citizens perspective,
by terom 6y ago
The idea would be to align the commercial interests of US cloud service providers with the privacy interests of EU customers.
From the EU citizens perspective, the ideal outcome would be for US cloud service providers to pressure US authorities to limit their surveillance of EU citizens and provide some kind of privacy guarantees. Here's to wishful thinking...
- DaiPlusPlus 6y agoGoogle, of all companies, was a major supporter of California's CCPA (Cali's GDPR-like legislation) last year. Cynically I suppose it was to ensure they'd at least have a say in what the CCPA covered... and to hurt their rivals (Facebook, etc).
- TomMarius 6y agoGDPR was supported by the biggest EU corporations as well - not much could help them more :-)
- dijit 6y agoThe idea the GDPR as a regulation helps established companies 'who can afford a gdpr team' more than joe the shoemaker is a weird meme.. GDPR hurts large companies that abuse data; the actual legislature is one of the most proportional regulations I've ever seen. You have the right to store peoples personal data if it's used and not processed for non-implied purposes (IE; generating profiles of people after sale) and not sold to another company. So when someone throws up a big "GDPR NOTICE" and you have to press the big "i agree" button, it behooves to read it; because that's often not required for the service, it's what's required for the company to sell on your data. Joe the Shoemaker can take your email address or phone number and call you, he's not going to have a hard time under GDPR. If you're abusing data, you're going to have a hard time- and that's good.
- TomMarius 6y agoMost companies don't (and never did nor are or were in position to) abuse data, but all companies now must adhere to GDPR. ;-) The world really isn't either Facebook or Joe the Shoemaker. There's a lot in between.
- dijit 6y agoSure, but after dragging the lawyers in and figuring out how we were impacted; (hint: we were barely impacted other than allowing people to download their data which was trivial) I am now truly skeptical of anyone who says that GDPR is a barrier to entry. Unless the "entry" is doing something nefarious.
- horsawlarway 6y agoI think this is pretty case specific I worked at a small company that made software to allow behavioral therapists to collect and analyze data about patients and visualize it more easily. Helped a lot when the patient was a young student and you're working with parents or guardians, and it replaced a lot of time therapists had previously been spending in Excel (or in some situations, hours with pen and paper). GDPR hit hard. We weren't selling any data at all, but because data was often stored grouped by classroom, or by therapist, or by org/admin, providing an easy way to give a patient a data dump of just their data (rather than the data a clinician was approved to view) was very expensive. I left for other reasons, but the company is still struggling with the added costs, and last I heard was going to be acquired.
- dijit 6y agoEveryone in this comment chain is being downvoted hard, I have no idea why; I can only assume trolls have finally hit the karma threshold for downvoting: To answer your case (and risk downvotes in doing so, gah): I think that the situation your company was in was almost exactly the reason GDPR was conceived, data custodians have an obligation to treat that data with the value it actually has, especially in the medical industry. GDPR was not, actually, invented with google/facebook in mind, it was due to the fact that people were selling data, and _also_ not taking care of it when they had it.. Imagine a world where there was no such thing as, idk, PCI compliance, say.. and while some people were treating card info as something they didn't want or stored very well--- the vast majority of people were instead saving them into text files and passing them around on open windows shares in order to process payments. For a lot of companies, GDPR just exposed their shortcomings, and yes, it's expensive to fix, but the point is that it's unhealthy in the first place, much like destroying the planet will destroy us all; unless there's a financial impact to the company itself, the company will continue to salt the earth without regard for anything. (contrived example, I know).
- donalhunt 6y agoBig companies just like legislation that is clear, won't be challenged and doesn't change (too) much. Allows them to commit resources without the goalposts changing.