Security & RansomwarePublished May 28, 2018

GDPR Is Here: What Canadian Businesses Should Know About EU Data Rules

Europe's new data protection law can apply to Canadian businesses too, depending on who your customers are.

The EU's General Data Protection Regulation (GDPR) took effect this month, and while it's a European law, it can apply to any business, anywhere, that handles personal data belonging to EU residents — for example, if you have customers or website visitors based in Europe.

For most small Ontario businesses without European customers, GDPR itself likely doesn't apply directly, but it's still worth using as a prompt to review your own data handling practices under Canada's PIPEDA. Do you know what personal data you collect, where it's stored, and who has access to it?

If you do have any EU customers or business dealings, it's worth a conversation with a privacy-knowledgeable advisor about your specific obligations — this article is a general awareness note, not legal advice.

Prefer to have this handled for you?

Our team can take care of this and everything else on your IT plate — no obligation to find out how.