Netskope is recognized as a Leader again in the Gartner® Magic Quadrant™ for SASE Platforms. Get the Report

close
close
Your Network of Tomorrow
Your Network of Tomorrow
Plan your path toward a faster, more secure, and more resilient network designed for the applications and users that you support.
Experience Netskope
Get Hands-on With the Netskope Platform
Here's your chance to experience the Netskope One single-cloud platform first-hand. Sign up for self-paced, hands-on labs, join us for monthly live product demos, take a free test drive of Netskope Private Access, or join us for a live, instructor-led workshops.
A Leader in SSE. Now a Leader in Single-Vendor SASE.
Netskope is recognized as a Leader Furthest in Vision for both SSE and SASE Platforms
2X a Leader in the Gartner® Magic Quadrant for SASE Platforms
One unified platform built for your journey
Securing Generative AI for Dummies
Securing Generative AI for Dummies
Learn how your organization can balance the innovative potential of generative AI with robust data security practices.
Modern data loss prevention (DLP) for Dummies eBook
Modern Data Loss Prevention (DLP) for Dummies
Get tips and tricks for transitioning to a cloud-delivered DLP.
Modern SD-WAN for SASE Dummies Book
Modern SD-WAN for SASE Dummies
Stop playing catch up with your networking architecture
Understanding where the risk lies
Advanced Analytics transforms the way security operations teams apply data-driven insights to implement better policies. With Advanced Analytics, you can identify trends, zero in on areas of concern and use the data to take action.
Netskope Technical Support
Netskope Technical Support
Our qualified support engineers are located worldwide and have diverse backgrounds in cloud security, networking, virtualization, content delivery, and software development, ensuring timely and quality technical assistance
Netskope video
Netskope Training
Netskope training will help you become a cloud security expert. We are here to help you secure your digital transformation journey and make the most of your cloud, web, and private applications.

3 steps to Kick-Start your Cloud Security Compliance for the EU GDPR

May 24 2016
Tags
Cloud Best Practices
Cloud Security
Compliance
GDPR
Shadow IT
Tools and Tips

The European Union General Data Protection Regulation (GDPR) goes into force this week with two years for organisations to comply (25 May 2018). As the countdown begins, organisations handling personal data of European Union citizens need to begin preparing for compliance. As a cloud access security broker, Netskope have a few first steps to help you get started. For a more comprehensive list, take a look at our GDPR Checklist.

Identify personal data and where the data resides in the cloud, including cloud apps and services that collect user information.

Organisations commonly will know what personal data are being used when looking at sanctioned applications. But with shadow IT, organisations will need to take a close look at what cloud apps are in use and do proper due diligence on the cloud security behind those apps. By knowing which apps are in use and where personal data are flowing, IT can start to define proper security processes and controls

Begin creation and documentation of processes and policies.

This means deciding and defining proper cloud security procedures and processes that will bring you into compliance with the GDPR with specific examples being defining how data breach notifications would possibly happen, how to protect personal data flowing in and out of cloud apps and services (i.e. encrypting personal data as they are being uploaded or preventing personal data from being uploaded to unsanctioned apps), obtaining employee consent for legitimate use of personal data, actually having documents for auditors and authorities describing each of these processes and policies, and more. Many companies may just rely on security tools they have purchased for security, but in order to achieve full GDPR compliance they will need to prove and/or document the measures they’ve taken.

Train and educate employees.

Education will be key to successful compliance and full cloud security for the GDPR. Not only do employees have the right to know how their personal data are being used, they should understand the security policies and procedures their company is undertaking for GDPR compliance. Many larger companies will even need to appoint or hire a data protection officer to implement the new rules and help with auditing and assessments as needed by the GDPR governing bodies.

To learn more about how the GDPR applies to your organization, sign up for one of our regional GDPR workshops, led by leading legal and privacy experts.

Connect with Netskope

Subscribe to the Netskope Blog

Sign up to receive a roundup of the latest Netskope content delivered directly in your inbox every month.