EBF position on EC’s proposal for a regulation on the protection of individuals re. processing of personal data/free movement of such data

22 May 2012

The EC's proposal aims to clarify some broad and complex issues, but the European Banking Federation has identified concerns for European banks in regard to fulfilling their data protection obligations.

1. Data Breach Notification

2. Consent

Reliance on explicit consent and significantly restricting consent where there is an imbalance in the form of dependence between the parties creates significant complications for companies.

3. Controller and processor

4. Enforcement and Penalties

Requiring penalties of up to two per cent of global turnover of a business is disproportionate, particularly where the main business of the corporate is not related to personal data or data processing.

5. Delegated and implementing acts

6. Terminology

Full position


© EBF