Skip to the main content

Preliminary communication

https://doi.org/10.38190/ope.11.1.6

Framework for introduction and verification of GDPR in small an medium-sized enterprises

Sanja Penić
Kristian Saletović orcid id orcid.org/0000-0002-0635-6126


Full text: croatian pdf 818 Kb

page 67-81

downloads: 430

cite


Abstract

The General Data Protection Regulation (Regulation (EU) 2016/697 known as GDPR) began its application in May 2018 and it had a significant impact on the organisation of business processes in companies. In particular, this was felt by small and medium-sized enterprises for which GDPR is an additional burden due to already limited resources. The framework for the implementation and revision of previously implemented GDPR requirements, presented in this paper, is the result of information obtained through scientific literature and knowledge obtained through the revision of the already implemented Regulation in two small enterprises. The obtained results showed that although it has been two years since the first implementation, there is still a misunderstanding of terminology and obligations in terms of daily application.

Keywords

personal data; small and medium-sized enterprises; GDPR; processes, security

Hrčak ID:

258782

URI

https://hrcak.srce.hr/258782

Publication date:

11.6.2021.

Article data in other languages: croatian

Visits: 943 *