General Data Protection Regulation – Getting over the finishing line

9.00 Registration and coffee

10.00 Chairman’s introduction
Paula Barrett

Eversheds Sutherland

10.15 The General Data Protection Regulation (GDPR)
• Overview
• ICO Guidance
• Post-GDPR Transition
• Data Protection Bill
Richard Syers

Senior Policy Officer
Information Commissioner’s Office

10.45 Countdown to implementation: a practical guide
• What firms should focus on – mandatory vs good practice
• Practical solutions to implementation challenges
• Effective preparation in areas where final guidance is still awaited
Paula Barrett
Eversheds Sutherland

11.15 Coffee Break

11.45 Credit Data Sharing – Privacy notices and profiling
• New consent and privacy notice requirements
• Embedding the new CRA privacy notice
• Profiling and automated decisions
Steve Martin
UK Data Protection Officer

12.15 How to approach data processed by intermediaries
• Readiness of intermediary partners for GDPR
• Consumer protections with respect to third party data processing
• Joint controllers
• Updating third party contracts
Alison Deighton

12.45 Lunch

13.45 Impact on Customer Data
• Right to erasure/right to be forgotten
• Subject access requests
• Criminal convictions data
• Record keeping and reporting requirements / retention periods
John Bowman
Senior Principal
Promontory Financial Group (UK) Ltd

14.15 The Data Protection Officer
• Role and responsibilities
• HR implications
• Breach notifications
• Data processing registers and backup data
Emma Burnett
CMS Cameron McKenna Nabarro Olswang LLP

14.45 Access to credit in the digital world
• Data Portability
• Privacy by design
• Social media
Neil Munroe
CRS Insights Ltd

15.15 Chairman’s final comments

15.30 Conference closes