Compliant Archiving Post #3: Encryption Hype in the GDPR Era

Sovos
February 2, 2017

This blog was last updated on September 23, 2019

Enterprises conducting business in the EU are currently analyzing the impacts and organizational changes required to comply with the General Data Protection Regulation that will, from May 2018, redesign the legal framework in privacy. The changes will substantially affect risk management processes and privacy requirements will become essential in product development and IT infrastructure design decisions. Very few have by now not heard about the deterrent penalties brought by the GDPR. As of next year, companies will not be able to sweep security breaches under the carpet and will be required to notify such events within 72 hours to their national data protection authority. The notification may need to be extended to affected customers, on an individual basis. A number of organizational, contractual and procedural measures must be taken to fulfill the obligations under this new framework, which also places significant technical requirements on the way companies handle data.

For this and other reasons, one can see why more and more commentators are stressing that encryption will soon become a must-have feature in the procurement and architecture of databases and data interchange. We are convinced that e-invoice archiving will not be any exception to this trend, and the benefits are certainly compelling. If prior to the security breach, data is rendered unintelligible by means of a reliable state-of-the-art encryption method, businesses are exempted from the obligation to individually notify data subjects. Moreover, a fine of up to 10 million euro can be imposed to any business that is deemed to have infringed its obligations under article 32(1) of the GDPR on security measures, which explicitly includes encryption among the appropriate technical measure to safeguard processing of personal data.

Sign up for Email Updates

Stay up to date with the latest tax and compliance updates that may impact your business.

Author

Sovos

Sovos is a global provider of tax, compliance and trust solutions and services that enable businesses to navigate an increasingly regulated world with true confidence. Purpose-built for always-on compliance capabilities, our scalable IT-driven solutions meet the demands of an evolving and complex global regulatory landscape. Sovos’ cloud-based software platform provides an unparalleled level of integration with business applications and government compliance processes. More than 100,000 customers in 100+ countries – including half the Fortune 500 – trust Sovos for their compliance needs. Sovos annually processes more than three billion transactions across 19,000 global tax jurisdictions. Bolstered by a robust partner program more than 400 strong, Sovos brings to bear an unrivaled global network for companies across industries and geographies. Founded in 1979, Sovos has operations across the Americas and Europe, and is owned by Hg and TA Associates.
Share this post

customer centric
North America Tax Compliance
January 7, 2025
“The first step to being customer centric is being with the client through thick and thin”

This blog was last updated on January 7, 2025 Interview with: Sergio Severo, Managing Director Sovos Latin America He was seriously considering retiring after an extensive and remarkable professional career when he received an invitation to lead our team in the region. Something about Sovos caught Sergio Severo’s attention, prompting him to abandon his retirement […]

agent of the consumer tnabc
North America ShipCompliant
January 6, 2025
TNABC Warns DtC Shippers Against ‘Agent of Consumer’ Sales

This blog was last updated on January 8, 2025 Learn why Tennessee’s Alcoholic Beverage Commission (TNABC) is cracking down on ‘agent of the consumer’ sales for DtC wine shippers. The Tennessee Alcoholic Beverage Commission (TNABC) recently sent a notice to licensed direct-to-consumer (DtC) wine shippers indicating that shipping as an “agent of the consumer” is […]

california unclaimed property notice
North America Unclaimed Property
January 6, 2025
California’s Unclaimed Property Crackdown: How to Respond to Notices

This blog was last updated on January 10, 2025 Learn how to respond to California’s unclaimed property notices. Avoid audits, penalties, and interest with timely actions and the Voluntary Compliance Program. Be aware! California is ramping up its enforcement of unclaimed property law, and businesses are in the crosshairs. Recently, the State Controller’s Office (SCO) […]

SAP Clean Core implementation
North America Tax Compliance
January 6, 2025
SAP: Your Business’ Path to Clean Core

This blog was last updated on January 10, 2025 In the first blog in our series, we introduced SAP Clean Core concept and how much is being made about its impact on business, specifically the ability to customize an ERP to meet operational needs. In part two, we addressed how businesses can use the SAP […]

alcohol deliveries
North America ShipCompliant
December 20, 2024
What if No One is Home to Sign for an Alcohol Delivery?

This blog was last updated on January 2, 2025 When no one is home to sign for an alcohol delivery, it becomes more than just a minor hiccup for direct-to-consumer (DtC) alcohol shippers. It’s a domino effect that transforms a perfectly curated product into a customer’s disappointment before it’s ever opened. This becomes an even […]