How US banks are preparing for the GDPR

The race is on for banks to comply with the GDPR, the European Union’s landmark data privacy regulation.

On May 25, EU companies will no longer be able to collect and use personal data without the individual’s consent, under the General Data Protection Regulation. U.S.-headquartered banks and fintech companies with global operations are anxiously preparing to comply with the new rules, anticipating a time when U.S. customers will demand the same protections from their home institutions.

GDPR applies to any organization operating within the EU, as well as those located outside of the EU which offer goods or services to customers or businesses in the EU. “Personal data” can include basic personal identifiers like a name, photo, email address or bank details, as well as things like posts on social networking websites, medical information or computer IP addresses. Customers have the right to a copy of the data institutions keep about them, as well as the right to be forgotten, or demand those institutions delete that data.

For U.S.-based banks with a global reach, it opens up questions about how to handle EU customer data and make sure they obtain customers’ consent to collect and hold their personal information.

Read the full story on tearsheet.co

https://digiday.com/?p=283977

More in Marketing

Ahead of Euro 2024 soccer tournament, brands look beyond TV to stretch their budgets

Media experts share which channels marketers are prioritizing at this summer’s Euro 2024 soccer tournament and the Olympic Games.

Google’s third-party cookie saga: theories, hot takes and controversies unveiled

Digiday has gathered up some of the juiciest theories and added a bit of extra context for good measure.

X’s latest brand safety snafu keeps advertisers at bay

For all X has done to try and make advertisers believe it’s a platform that’s safe for brands, advertisers remain unconvinced, and the latest headlines don’t help.