01 SLLN Welcome Page updated November 2019

SHANGRI-LA HOTEL, AT THE SHARD, LONDON – General Data Protection Regulation Overview

In the digital age, one’s personal data is considered a valuable asset . People are more concerned than ever about how companies handle their personal data - the recent Facebook saga involving mishandling of user data is an extreme example. Worldwide governments are taking stronger measures to regulate how organizations handle personal data. In particular, the European Union (EU) has issued a new set of regulations called the “ General Data Protection Regulation (GDPR) ” that came into effect on 25 May 2018 . GDPR is intended to strengthen the privacy rights of EU individuals and r egulate the collection, use, processing and transfer of such personal data . There are already similar personal data protection laws that are in place in some of the jurisdictions where we operate such as Australia, China, Hong Kong, Malaysia, Philippines and Singapore. How does GDPR impact us? The unique feature of the GDPR is that it applies to all organizations in or outside the EU as long as they collect and process personal data of EU individuals. As a global hotel group, the GDPR impacts all our hotels and offices that provide or market products and services to EU individuals (both guests and employees). GDPRmay apply even if the EU individual’s personal data is collected outside of the EU region. With the implementation of GDPR, EU individuals have expanded rights such as:

The definition of “personal data” is now also broader and includes, but is not limited to, such identifiers as below.

Made with FlippingBook - professional solution for displaying marketing and sales documents online