Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking & Finance Review®

Global Banking & Finance Review® - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Advertising and Sponsorship
    • Profile & Readership
    • Contact Us
    • Latest News
    • Privacy & Cookies Policies
    • Terms of Use
    • Advertising Terms
    • Issue 81
    • Issue 80
    • Issue 79
    • Issue 78
    • Issue 77
    • Issue 76
    • Issue 75
    • Issue 74
    • Issue 73
    • Issue 72
    • Issue 71
    • Issue 70
    • View All
    • About the Awards
    • Awards Timetable
    • Awards Winners
    • Submit Nominations
    • Testimonials
    • Media Room
    • FAQ
    • Asset Management Awards
    • Brand of the Year Awards
    • Business Awards
    • Cash Management Banking Awards
    • Banking Technology Awards
    • CEO Awards
    • Customer Service Awards
    • CSR Awards
    • Deal of the Year Awards
    • Corporate Governance Awards
    • Corporate Banking Awards
    • Digital Transformation Awards
    • Fintech Awards
    • Education & Training Awards
    • ESG & Sustainability Awards
    • ESG Awards
    • Forex Banking Awards
    • Innovation Awards
    • Insurance & Takaful Awards
    • Investment Banking Awards
    • Investor Relations Awards
    • Leadership Awards
    • Islamic Banking Awards
    • Real Estate Awards
    • Project Finance Awards
    • Process & Product Awards
    • Telecommunication Awards
    • HR & Recruitment Awards
    • Trade Finance Awards
    • The Next 100 Global Awards
    • Wealth Management Awards
    • Travel Awards
    • Years of Excellence Awards
    • Publishing Principles
    • Ownership & Funding
    • Corrections Policy
    • Editorial Code of Ethics
    • Diversity & Inclusion Policy
    • Fact Checking Policy
    Original content: Global Banking and Finance Review - https://www.globalbankingandfinance.com

    A global financial intelligence and recognition platform delivering authoritative insights, data-driven analysis, and institutional benchmarking across Banking, Capital Markets, Investment, Technology, and Financial Infrastructure.

    Copyright © 2010-2026 - All Rights Reserved. | Sitemap | Tags

    Editorial & Advertiser disclosure

    Global Banking & Finance Review® is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    1. Home
    2. >Finance
    3. >GDPR: WHAT FINANCIAL FIRMS NEED TO KNOW
    Finance

    Gdpr: What Financial Firms Need to Know

    Published by Gbaf News

    Posted on July 19, 2017

    8 min read

    Last updated: January 21, 2026

    Add as preferred source on Google
    Image depicting the Swiss government building, symbolizing the confirmation of Switzerland's majority stake in Swisscom. This decision highlights the importance of state involvement in telecom for security policy.
    Swiss government confirms majority stake in Swisscom for security policy - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    For many, the General Data Protection Regulation (GDPR) has mainly been handed over to the IT department.However, while IT professionals may be somewhat prepared for this regulation ahead of the official implementation on 25th May 2018, the business as a whole needs to be responsible and aware of the implications. Financial institutions, in particular, need to consider the repercussions this regulation will have, how to prepare for this change and the importance of having enough time to comply.

    What does FS need to know about the GDPR?

    Firstly, firms need to understand the changes will come into effect under the GDPR and, more importantly, how they will affect their day-to-day operations. Put simply, GDPR aims to standardise data protection across the EU, placing a greater focus on accountability and documentation should a cyber-attack occur.

    While this may sound like a lot of work, the UK is in a good position.The GDPR reflects many of the compliance rules already set out in the Data Protection Act. However, the GDPR will expand on this 19-year-old Act to include data that is both automated and manually filed. In some cases, personal data that is key-coded can also be included in this regulation. Because of this, many professionals have worried about the impact GDPR will have on their businesses, but there are processes that can be put in place to offset this concern.

    Meeting compliancy

    Most businesses should already be taking steps to protect themselves from a breach. However, additional elements need to be incorporated to fully comply with the GDPR. For financial firms, client data will need to be a particular focus of attention.

    Even in cases where customers have given consent for their information to be used, they may not have given consent for their data to be processed. The GDPR requires accountability at every level of the business, so it’s important that clients give their consent for data to be processed on top of the standard consent documentation.

    Additionally, under the GDPR, businesses are obligated to share full details of a data breach as soon as possible with the Information Commissioner’s Office (ICO). If a company is based abroad, a country-specific supervisory authority will need to be notified. This can be a costly and time-consuming process to the company, while also damaging the company’s reputation through a‘name-and-shame’ process.

    However, the Supervisory Authority does not need to be alerted if the data has undergone a process known as ‘Pseudonymisation.’ This refers to an encryption process that renders the original data less identifiable, making it useless to any hacker.

    All these issues need to be managed by a Data Protection Officer (DPO) who can oversee any breach and take responsibility for data protection compliance. Fortunately, the responsibilities of the DPO can he assigned to an external third-party operator, should one not be present within the organisation. This allows many businesses to offset the strain to a professional provider that can aid a company in regulatory compliance.

    Why now?

    It is evident that the process of complying with the GDPR is data intensive, requiring time and effort to fully meet the regulatory requirements. The complexity of this task becomes compounded if a company has not maintained a consistent record of its processing activities prior to this time.

    Many large businesses are still underprepared for this dramatic change in data protection. While the UK has the benefit of meeting the regulation part-way with the Data Protection Act, it is integral that organisations can meet the government’s requirements for data safety ahead of the deadline in 2018. If found to be non-compliant, a business could suffer hefty sanctions including regular security audits and fines up to €20,000,000, or 4% of its annual turnover.However, the damage of not complying goes beyond the financials.

    If a company is shown to be non-compliant with the GDPR, its reputation as a reliable organisation can be permanently damaged, resulting in a loss of customers and revenue for the long term. For financial firms especially, defending the company’s reputation is therefore a key motivator to prepare sooner, rather than later.

    The GDPR is set to change the way businesses protect their data. While there is still time for companies to achieve compliance with these regulations, financial firms need to act now to allow for any difficulties they encounter in the run-up to the deadline. Firms need to be aware that the GDPR will require more than simply ensuring the company’s data security is up to scratch.Instead, it will require a holistic approach where everyone recognises the financial and reputational dangers that non-compliance can create.

    For many, the General Data Protection Regulation (GDPR) has mainly been handed over to the IT department.However, while IT professionals may be somewhat prepared for this regulation ahead of the official implementation on 25th May 2018, the business as a whole needs to be responsible and aware of the implications. Financial institutions, in particular, need to consider the repercussions this regulation will have, how to prepare for this change and the importance of having enough time to comply.

    What does FS need to know about the GDPR?

    Firstly, firms need to understand the changes will come into effect under the GDPR and, more importantly, how they will affect their day-to-day operations. Put simply, GDPR aims to standardise data protection across the EU, placing a greater focus on accountability and documentation should a cyber-attack occur.

    While this may sound like a lot of work, the UK is in a good position.The GDPR reflects many of the compliance rules already set out in the Data Protection Act. However, the GDPR will expand on this 19-year-old Act to include data that is both automated and manually filed. In some cases, personal data that is key-coded can also be included in this regulation. Because of this, many professionals have worried about the impact GDPR will have on their businesses, but there are processes that can be put in place to offset this concern.

    Meeting compliancy

    Most businesses should already be taking steps to protect themselves from a breach. However, additional elements need to be incorporated to fully comply with the GDPR. For financial firms, client data will need to be a particular focus of attention.

    Even in cases where customers have given consent for their information to be used, they may not have given consent for their data to be processed. The GDPR requires accountability at every level of the business, so it’s important that clients give their consent for data to be processed on top of the standard consent documentation.

    Additionally, under the GDPR, businesses are obligated to share full details of a data breach as soon as possible with the Information Commissioner’s Office (ICO). If a company is based abroad, a country-specific supervisory authority will need to be notified. This can be a costly and time-consuming process to the company, while also damaging the company’s reputation through a‘name-and-shame’ process.

    However, the Supervisory Authority does not need to be alerted if the data has undergone a process known as ‘Pseudonymisation.’ This refers to an encryption process that renders the original data less identifiable, making it useless to any hacker.

    All these issues need to be managed by a Data Protection Officer (DPO) who can oversee any breach and take responsibility for data protection compliance. Fortunately, the responsibilities of the DPO can he assigned to an external third-party operator, should one not be present within the organisation. This allows many businesses to offset the strain to a professional provider that can aid a company in regulatory compliance.

    Why now?

    It is evident that the process of complying with the GDPR is data intensive, requiring time and effort to fully meet the regulatory requirements. The complexity of this task becomes compounded if a company has not maintained a consistent record of its processing activities prior to this time.

    Many large businesses are still underprepared for this dramatic change in data protection. While the UK has the benefit of meeting the regulation part-way with the Data Protection Act, it is integral that organisations can meet the government’s requirements for data safety ahead of the deadline in 2018. If found to be non-compliant, a business could suffer hefty sanctions including regular security audits and fines up to €20,000,000, or 4% of its annual turnover.However, the damage of not complying goes beyond the financials.

    If a company is shown to be non-compliant with the GDPR, its reputation as a reliable organisation can be permanently damaged, resulting in a loss of customers and revenue for the long term. For financial firms especially, defending the company’s reputation is therefore a key motivator to prepare sooner, rather than later.

    The GDPR is set to change the way businesses protect their data. While there is still time for companies to achieve compliance with these regulations, financial firms need to act now to allow for any difficulties they encounter in the run-up to the deadline. Firms need to be aware that the GDPR will require more than simply ensuring the company’s data security is up to scratch.Instead, it will require a holistic approach where everyone recognises the financial and reputational dangers that non-compliance can create.

    More from Finance

    Explore more articles in the Finance category

    Image for McCormick bets on flavor in $65 billion Unilever tie-up amid shifting tastes
    McCormick Bets on Flavor in $65 Billion Unilever Tie-Up Amid Shifting Tastes
    Image for Poland detains two over arson attack on Czech drone factory, TVP Info reports
    Poland Detains Two Over Arson Attack on Czech Drone Factory, Tvp Info Reports
    Image for US to leave Iran 'pretty quickly' and return if needed, Trump tells Reuters
    US to Leave Iran 'pretty Quickly' and Return if Needed, Trump Tells Reuters
    Image for Intel to buy back Apollo stake in Ireland factory for $14.2 billion
    Intel to Buy Back Apollo Stake in Ireland Factory for $14.2 Billion
    Image for Trump threatens NATO exit, scaling up tensions with allies
    Trump Threatens NATO Exit, Scaling up Tensions With Allies
    Image for Spain's Indra chairman to resign after failed EM&E deal, reports say
    Spain's Indra Chairman to Resign After Failed Em&e Deal, Reports Say
    Image for Exclusive-Bank of England's Bailey says markets still ahead of themselves in pricing rate hikes
    Exclusive-Bank of England's Bailey Says Markets Still Ahead of Themselves in Pricing Rate Hikes
    Image for Ukraine's gas imports tumble, further imports expected to be low
    Ukraine's Gas Imports Tumble, Further Imports Expected to Be Low
    Image for Coca-Cola plans to invest $1 billion in South Africa through 2030
    Coca-Cola Plans to Invest $1 Billion in South Africa Through 2030
    Image for Swiss finance minister sues for defamation over Grok-created post
    Swiss Finance Minister Sues for Defamation Over Grok-Created Post
    Image for Thyssenkrupp's steel unit pushes EU to protect special steel sector
    Thyssenkrupp's Steel Unit Pushes EU to Protect Special Steel Sector
    Image for Stellantis to recall up to 700,000 cars worldwide over fire risk
    Stellantis to Recall up to 700,000 Cars Worldwide Over Fire Risk
    View All Finance Posts
    Previous Finance PostDigital Retail Wallet: 5 Reasons IT Makes Sense
    Next Finance PostThe Challenger Bank Bni Europa Launches “puzzle” an Innovative FinTech Focused on Consumer Credit