Compliant Archiving Post #3: Encryption Hype in the GDPR Era

Sovos
February 2, 2017

Enterprises conducting business in the EU are currently analyzing the impacts and organizational changes required to comply with the General Data Protection Regulation that will, from May 2018, redesign the legal framework in privacy. The changes will substantially affect risk management processes and privacy requirements will become essential in product development and IT infrastructure design decisions. Very few have by now not heard about the deterrent penalties brought by the GDPR. As of next year, companies will not be able to sweep security breaches under the carpet and will be required to notify such events within 72 hours to their national data protection authority. The notification may need to be extended to affected customers, on an individual basis. A number of organizational, contractual and procedural measures must be taken to fulfill the obligations under this new framework, which also places significant technical requirements on the way companies handle data.

For this and other reasons, one can see why more and more commentators are stressing that encryption will soon become a must-have feature in the procurement and architecture of databases and data interchange. We are convinced that e-invoice archiving will not be any exception to this trend, and the benefits are certainly compelling. If prior to the security breach, data is rendered unintelligible by means of a reliable state-of-the-art encryption method, businesses are exempted from the obligation to individually notify data subjects. Moreover, a fine of up to 10 million euro can be imposed to any business that is deemed to have infringed its obligations under article 32(1) of the GDPR on security measures, which explicitly includes encryption among the appropriate technical measure to safeguard processing of personal data.

Sign up for Email Updates

Stay up to date with the latest tax and compliance updates that may impact your business.

Author

Sovos

Sovos is a global provider of tax, compliance and trust solutions and services that enable businesses to navigate an increasingly regulated world with true confidence. Purpose-built for always-on compliance capabilities, our scalable IT-driven solutions meet the demands of an evolving and complex global regulatory landscape. Sovos’ cloud-based software platform provides an unparalleled level of integration with business applications and government compliance processes. More than 100,000 customers in 100+ countries – including half the Fortune 500 – trust Sovos for their compliance needs. Sovos annually processes more than three billion transactions across 19,000 global tax jurisdictions. Bolstered by a robust partner program more than 400 strong, Sovos brings to bear an unrivaled global network for companies across industries and geographies. Founded in 1979, Sovos has operations across the Americas and Europe, and is owned by Hg and TA Associates.
Share this post

North America ShipCompliant
April 17, 2024
3 Reasons Craft Beer Drinkers Want DtC Shipping

While only 11 states and D.C. allow direct-to-consumer (DtC) beer shipping, more than half of Americans ages 21+ (51%) would purchase more craft beer if they were able to have it shipped directly to their home. In this blog, we discuss the top three reasons why craft beer drinkers want beer sent directly to them […]

North America ShipCompliant
April 17, 2024
States Are Looking to Expand DtC Spirits & Beer Availability

2024 is shaping up to be a banner year for legislative efforts related to the direct-to-consumer (DtC) shipping of beverage alcohol. While these proposed laws span a range of legal issues, the primary driver of the bills is expanding access to the DtC market for beer and spirits producers. Currently, 47 states and D.C. permit […]

North America Tax Information Reporting
March 22, 2024
Market Conduct Annual Statement Reminders and More

On the second Wednesday of each month, Sovos experts host a 30-minute webinar, Water Cooler Wednesday, to share the latest updates on statutory filings. In March, Sarah Stubbs shared information about the many filings due after March 1, from Market Conduct Annual Statements to health supplements for P&C and life insurers writing A&H businesses and […]

North America ShipCompliant
March 21, 2024
How Producers Can Build a DtC Shipping Market

Direct-to-consumer (DtC) shipping has become one of the leading sales models for businesses of all sizes and in all markets. The idea of connecting directly with consumers is notably attractive, as it helps brands develop a personal relationship and avoid costly distribution chains. Yet, for all its popularity, DtC is often a hard concept to […]

North America ShipCompliant
March 20, 2024
Key Findings from the 2024 DtC Beer Shipping Report

This March, Sovos ShipCompliant released the fourth annual Direct-to-Consumer Beer Shipping Report in partnership with the Brewers Association. The DtC beer shipping report features exclusive insights on the regulatory state of the direct-to-consumer (DtC) channel, Brewers Association’s perspective and key data from a consumer preferences survey. Let’s take a deeper dive into some of the […]