<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic The Netherlands premieres the first GDPR fining policy in the EU in Privacy</title>
    <link>https://community.isc2.org/t5/Privacy/The-Netherlands-premieres-the-first-GDPR-fining-policy-in-the-EU/m-p/20152#M731</link>
    <description>&lt;P&gt;&lt;SPAN&gt;The Dutch Data Protection Authority just released its&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://autoriteitpersoonsgegevens.nl/sites/default/files/atoms/files/stcrt-2019-14586.pdf" target="_blank" rel="nofollow noopener"&gt;GDPR fining policy&lt;/A&gt;&lt;SPAN&gt;, being the first country to do so.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;GDPR allows for a maximum fine of 4 percent of global revenue or €20 million, whichever is higher, but little has been said about how to determine the exact fine amount and what the scale is.&lt;/P&gt;&lt;P&gt;The new GDPR fining policy sheds light on this as it introduces a four category system, giving various examples depending on company size and maximum fine. For example, if a company’s maximum fine is €10 million, it might face the following fines for less severe violations:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Category I: €0 to €200,000&lt;/LI&gt;&lt;LI&gt;Category II: €120,000 to €500,000&lt;/LI&gt;&lt;LI&gt;Category III: €300,000 to €750,000&lt;/LI&gt;&lt;LI&gt;Category IV: €450,000 to €1 million&lt;/LI&gt;&lt;/UL&gt;</description>
    <pubDate>Mon, 09 Oct 2023 09:09:05 GMT</pubDate>
    <dc:creator>leroux</dc:creator>
    <dc:date>2023-10-09T09:09:05Z</dc:date>
    <item>
      <title>The Netherlands premieres the first GDPR fining policy in the EU</title>
      <link>https://community.isc2.org/t5/Privacy/The-Netherlands-premieres-the-first-GDPR-fining-policy-in-the-EU/m-p/20152#M731</link>
      <description>&lt;P&gt;&lt;SPAN&gt;The Dutch Data Protection Authority just released its&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://autoriteitpersoonsgegevens.nl/sites/default/files/atoms/files/stcrt-2019-14586.pdf" target="_blank" rel="nofollow noopener"&gt;GDPR fining policy&lt;/A&gt;&lt;SPAN&gt;, being the first country to do so.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;GDPR allows for a maximum fine of 4 percent of global revenue or €20 million, whichever is higher, but little has been said about how to determine the exact fine amount and what the scale is.&lt;/P&gt;&lt;P&gt;The new GDPR fining policy sheds light on this as it introduces a four category system, giving various examples depending on company size and maximum fine. For example, if a company’s maximum fine is €10 million, it might face the following fines for less severe violations:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Category I: €0 to €200,000&lt;/LI&gt;&lt;LI&gt;Category II: €120,000 to €500,000&lt;/LI&gt;&lt;LI&gt;Category III: €300,000 to €750,000&lt;/LI&gt;&lt;LI&gt;Category IV: €450,000 to €1 million&lt;/LI&gt;&lt;/UL&gt;</description>
      <pubDate>Mon, 09 Oct 2023 09:09:05 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Privacy/The-Netherlands-premieres-the-first-GDPR-fining-policy-in-the-EU/m-p/20152#M731</guid>
      <dc:creator>leroux</dc:creator>
      <dc:date>2023-10-09T09:09:05Z</dc:date>
    </item>
    <item>
      <title>Re: The Netherlands premieres the first GDPR fining policy in the EU</title>
      <link>https://community.isc2.org/t5/Privacy/The-Netherlands-premieres-the-first-GDPR-fining-policy-in-the-EU/m-p/20157#M733</link>
      <description>Yves,&lt;BR /&gt;that being said, it is then a statement, that the 10 mio will not be fined ever, right?&lt;BR /&gt;Or is another category above CatIV?&lt;BR /&gt;&lt;BR /&gt;And also there are potential variations in "guiltiness" of the behaviors, wouldn't it?&lt;BR /&gt;Will be interesting to see how GDPR certifications and assertions will proceed, same as with definition of fines...&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Fri, 15 Mar 2019 14:52:52 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Privacy/The-Netherlands-premieres-the-first-GDPR-fining-policy-in-the-EU/m-p/20157#M733</guid>
      <dc:creator>RRehm</dc:creator>
      <dc:date>2019-03-15T14:52:52Z</dc:date>
    </item>
  </channel>
</rss>

