Regulations on the cloud

Understanding Cloud Computing

Lis Sulmont

Curriculum Manager, DataCamp

Global map with a data center in the USA

Understanding Cloud Computing

Global map with data centers in the USA, Europe, and South America

Understanding Cloud Computing

Global map with data centers in the USA, Europe, South America, Africa, and Asia

Understanding Cloud Computing

Map with data centers globally and a user in Australia

Understanding Cloud Computing

Map with data centers globally and a user in Australia connecting to the data center in Asia

Understanding Cloud Computing

Map with data centers globally and a user in Australia connecting to the data center in Asia with an arrow on Australia

Understanding Cloud Computing

Map with data centers globally and a user in Australia connecting to the data center in Asia with an arrow on Asia

Understanding Cloud Computing

Map with data centers globally and a user in Australia connecting to the data center in Asia with an arrow on the USA

Understanding Cloud Computing

General Data Protection Regulation (GDPR)

  • Regulates how personal data is collected, processed, and stored from users in the EU
  • Examples:
    • Users must explicitly consent to data collection
    • Notify users of any data breaches
    • Personal data information must be encrypted, anonymized, and/or pseudonymized
    • Personal data can't leave EU borders, unless you can guarantee the same level of protection
  • Fine: 20 million Euros or up to 4% of the worldwide annual revenue
Understanding Cloud Computing

What is personal data?

Personal data is any information that relates to an identified or identifiable living individual. Different pieces of information, which collected together can lead to the identification of a particular person, also constitute personal data. [1]

  • Includes: home address, first name, last name, email address, location data, IP address, racial or ethnic origin, political opinions, sexual orientation, health related data
  • Personally identifiable information (PII)
1 https://ec.europa.eu/info/law/law-topic/data-protection/reform/what-personal-data_en
Understanding Cloud Computing

Other regulations

  • Brazil's Lei Geral de Proteçao de Dados (LGPD)
  • California's Consumer Privacy Act (CCPA)
  • USA's Health Insurance Portability and Accountability Act (HIPAA)
  • Japan's Act on Protection of Personal Information
  • Thailand Personal Data Protection Act (PDPA)
  • Canada's Personal Information Protection and Electronic Documents Act (PIPEDA)
Understanding Cloud Computing

Let's practice!

Understanding Cloud Computing

Preparing Video For Download...