EU ARC- GDPR COMPLIANCE for SMEs’ cover photo
EU ARC- GDPR COMPLIANCE for SMEs

EU ARC- GDPR COMPLIANCE for SMEs

Law Enforcement

Project ARC II - GDPR Awareness Raising Campaign For SMEs, co-funded by the EU, Citizenship, Equality, Rights and Values

About us

On the 25th May, 2018, Europe introduced a ground-breaking regulation to manage the way in which personal data is handled in the EU. The General Data Protection Regulation (GDPR) enhanced the data protection rights of individuals, strengthened the enforcement powers of Data Protection Authorities and increased the obligations of accountability and transparency on organisations that process personal data as part of their business. Since that time, SMEs have been seeking reliable guidance on how best to meet those obligations and ensure that they are in compliance with the requirements of the GDPR. As part of the EU Commission’s efforts to provide that guidance, Project ARC – AWARENESS RAISING CAMPAIGN FOR SMEs has been funded by the EU Commission with the expressed purpose of providing that guidance and engaging with SMEs in a meaningful way to harmonise compliance across the Union. The project - which commenced at the end of March 2020 - is being steered by a partnership between the Croatian and Irish Data Protection Authorities and Vrije University in Brussels. Over the course of the next two years, the project team will be engaging with SMEs on an ongoing basis to develop the resources SMEs need to drive GDPR-compliance.

Website
http://arc-rec-project.eu/
Industry
Law Enforcement
Company size
51-200 employees
Headquarters
Zagreb/Rome
Type
Public Company

Locations

Updates

  • EU ARC- GDPR COMPLIANCE for SMEs reposted this

    [ FOI na konferenciji u organizaciji Croatian Data Protection Authority-Agencija za zaštitu osobnih podataka ] Konferencija „Zaštita osobnih podataka u sustavima umjetne inteligencije“, održana povodom 20. Europskog dana zaštite osobnih podataka u Zagrebu, bila je prilika za predstavljanje razvoja digitalnog alata OLIVIA, koji je dizajniran da može pomoći MPS-ovima u razumijevanju njihovih zakonskih obveza vezanih uz zaštitu osobnih podataka. Predstavio ga je prodekan za nastavu i studente izv. prof. dr. sc. Zlatko Stapić, koji je tom prilikom istaknuo i dugogodišnju, uspješnu suradnju FOI-ja i AZOP-a! U panelu „Digital omnibus: deregulacija u službi inovacija ili prijetnja ljudskim pravima“, izv. prof. dr. sc. Dijana Oreški govorila o važnosti pravno sigurnog okvira za znanstvena istraživanja, odgovornoj obradi osobnih podataka u AI sustavima i ulozi akademske zajednice u povezivanju istraživanja, tehnologije i zaštite temeljnih prava građana. Tijekom panelice govorila je i o projektima FOI-ja u području umjetne inteligencije, čime je dodatno istaknuta uloga Fakulteta u razvoju AI rješenja i primjeni znanstvenih istraživanja: https://lnkd.in/d9N4n4mg Zahvaljujemo svim sudionicima i organizatorima: Zdravko Vukić, Anamarija Mladinić, Marko Troselj, dr. sc. Ema Menđušić Škugor, PhD, Duje Kozomara, Marijana Sarolic Robic i dr. #FOI #AZOP #AI #dataprotection #panel #lecture

    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
      +3
  • EU ARC- GDPR COMPLIANCE for SMEs reposted this

    Today, I had the opportunity to attend the international conference marking the 30th anniversary of Hungary’s institutional system of information rights. The morning sessions offered an international perspective, featuring insightful contributions from the heads of data protection authorities across neighboring countries. Zdravko Vukić, Deputy Chair of the EDPB, gave an engaging talk on the Board’s role in cross-border cooperation and introduced “Olivia” – a virtual teacher and assistant that provides learning modules on personal data protection and helps organizations create internal documents to demonstrate compliance. In the afternoon, the focus shifted to Hungary-specific topics, with valuable reflections on the past three decades and the future challenges of information rights in the country. Thank you to NAIH for organising the event and to all presenters for their engaging and informative contributions.

    • No alternative text description for this image
  • EU ARC- GDPR COMPLIANCE for SMEs reposted this

    🔍 Friday the 13th — Unlucky? Not for Croatian AI deployers. Quite the opposite, it turned out to be a lucky 🍀 day for everyone eager to build responsible and rights-respecting AI systems 🤖⚖️.The workshop, organized by the Croatian Data Protection Authority (AZOP) Zdravko Vukić on 13th June 🇭🇷, brought together experts and practitioners to learn how to carry out a Fundamental Rights Impact Assessment (FRIA) in practice. 👨🏫🌟Thanks to the brilliant Prof. Alessandro Mantelero, participants had the opportunity to learn how to conduct a FRIA through practical, real-life examples. Together with the Autoritat Catalana de Protecció de Dades DPA, Alessandro developed a pioneering FRIA methodology: clear, hands-on, and designed to ensure that AI systems truly respect fundamental rights. But let’s not kid ourselves , this is not a few hours ⏱️ box-ticking exercise. FRIA requires deep understanding of how your AI system works and how fundamental rights apply in real-world contexts 🌍. 🤝 We rolled up our sleeves and have been learning by doing. This was a prime example of cooperation between academia, businesses, public authorities, legal experts and regulators at its best. Together, we explored use cases like: 🩺 AI for calculating health insurance premiums 🎓 AI for candidate selection in university admissions 🎟️ Automated ticket dispatching systems 📄 AI-powered CV screening tools in recruitment 🥼 AI for personalized food supplement recommendations Dr. Natalija Parlov Una Stefan Martinić Ivan Ivankovic 🙏We are truly grateful to Prof. Alessandro Mantelero for delivering the most dynamic, practical and engaging event we’ve ever hosted at our DPA. I’ve never met an expert who so passionately advocates for fundamental rights, shares his knowledge so generously and openly and at the same time remains remarkably down-to-earth, kind and pragmatic. Thank you, Alessandro, for your inspiring energy and unwavering commitment to human dignity in the age of AI! While some still see FRIA  (and AI regulation) as an unecessary burden, we see it as a necessary safeguard 🛡️. Because behind every data point is a human being: a child 👶, a parent 👩👧, a friend 🧑🤝🧑. So ask yourself: ❓ Would you accept being charged a higher premium because an algorithm inferred your ethnicity or income level? ❓ Would you be okay with your child being denied access to education due to a biased model? ❓ Would you want your friend reduced to a keyword match without explanation? ❓ Would you want your grandmother denied medical help just because of her age? ❓ Would you want your father misled by AI-generated health advice? 👉 I believe the answer is NO. And that’s exactly why we need FRIA. We now look forward to complementing this methodology with Croatian use cases 🇭🇷📈, making it even more relevant and impactful in our national context. Karlo P.

    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
      +1
  • EU ARC- GDPR COMPLIANCE for SMEs reposted this

    Danas sam održala interaktivnu edukaciju Olivia i GDPR. Olivia je nastala u okviru EU projekta EU ARC- GDPR COMPLIANCE for SMEs, konzorcij Croatian Data Protection Authority-Agencija za zaštitu osobnih podataka, The Italian Data Protection Authority, Fakulteta organizacije i informatike – Sveučilište u Zagrebu, Sveučilišta Vrije i Sveučilišta u Firenci. Riješili smo kviz o organizacijskim mjerama zaštite osobnih podataka i dobili potvrde o edukaciji, izradili Pravilnik o informacijskoj sigurnosti te raspravljali o tehničkim mjerama zaštite osobnih podataka. Na kraju smo napisali ugovor o obradi podataka, izgenerirali standardne ugovorne klauzule za prijenos osobnih podataka i proučili upitnik za ocjenu učinka na prijenos osobnih podataka. Hvala Hrvatska gospodarska komora, Croatian Compliance Association - Hrvatska udruga za usklađenost poslovanja i Udruga korporativnih pravnika na organizaciji i hvala svim polaznicima na sudjelovanju! #oliviaknowsgdpr #gdpr #gdprcompliance #compliance

    • No alternative text description for this image
    • No alternative text description for this image
  • EU ARC- GDPR COMPLIANCE for SMEs reposted this

    I am very pleased that the Croatian Data Protection Authority-Agencija za zaštitu osobnih podataka has translated the fundamental rights impact assessment methodology that we developed at the Autoritat Catalana de Protecció de Dades. This was precisely the purpose of the project: to make our model available to all interested DPAs and institutions. A model that can be used both by #AI providers to assess the impact on fundamental rights in the context of conformity assessment, and by AI deployers in the context of Article 27. I am grateful to Anamarija Mladinić and the Croatian Data Protection Authority for their interest in the model, and will be happy to work with them and support Croatian private and public bodies in familiarising themselves with the FRIA model.

    🔍 Procjena učinka na ljudska prava (FRIA) i umjetna inteligencija 🤖 S obzirom na sve veći utjecaj sustava umjetne inteligencije, ključno je provesti procjenu učinka na ljudska prava prije uvođenja visokorizičnih sustava. Prije uvođenja visokorizičnog sustava umjetne inteligencije iz članka 6. stavka 2., Uredbe o umjetnoj inteligenciji uz iznimku visokorizičnih UI sustava namijenjenih za upotrebu u području navedenom u točki 2. Priloga III., subjekti koji uvode sustav, a koji su javnopravna tijela ili privatni subjekti koji pružaju javne usluge, kao i subjekti koji uvode visokorizične UI sustave iz točke 5. podtočaka (b) i (c) Priloga III., provode procjenu učinka koju upotreba takvog sustava može imati na temeljna prava. U tu svrhu subjekti koji uvode sustav provode procjenu koja sadrži: 1️⃣ Opis procesa korištenja sustava. 2️⃣ Razdoblje i učestalost njegove upotrebe. 3️⃣ Kategorije osoba koje će vjerojatno biti pogođene. 4️⃣ Specifične rizike od štete za identificirane skupine. 5️⃣ Mjere ljudskog nadzora. 6️⃣ Mjere za upravljanje rizicima i podnošenje pritužbi. Agencija za zaštitu osobnih podataka preporučuje korištenje metodologije razvijene od strane tijela za zaštitu podataka Katalonije Autoritat Catalana de Protecció de Dades (ADPCAT), u okviru projekta kojim je koordinirao Alessandro Mantelero kako bi se olakšala provedba ove kompleksne procjene. 📊 Metodologija je dostupna na hrvatskom jeziku na poveznici: https://lnkd.in/dcniYQbg Procjena učinka na ljudska prava (FRIA) obvezna je u fazi uvođenja visokorizičnog UI sustava, dok je procjenu učinka na zaštitu podataka potrebno provesti na samom početku, odnosno prije početka razvoja sustava umjetne inteligencije. Obveza provedbe FRIA-e može se primjenjivati i ako ne postoji visokorizična obrada osobnih podataka u okviru visokorizičnog UI sustava. Procjena učinka na zaštitu podataka trebala bi se provesti i ako se ne radi o visokorizičnom UI sustavu, ali se obrada osobnih podataka unutar UI sustava smatra visokorizičnom. Više informacija na: https://lnkd.in/dkpFV7x4 #AI #FRIA #GDPR #humanrights

    • No alternative text description for this image

Similar pages