Blog Post
Features

movingimage complies with GDPR

You have all probably heard about the EU General Data Protection Regulation (GDPR) coming into force on May 25th, 2018. The GDPR has become a prominent theme over the past few years, especially within business environments. As it will soon affect every corporation in Europe, as well as any corporation that maintains a business relationship with Europe, we’ve prepared a succinct, summarized Q&A to shed some light upon movingimage’s compliance with GDPR.
Employees discussing GDPR compliance at work.
Resources

Get Access to Expert Insights

Expert guidance, research, and tools to help you optimize your video strategy.
Employees discussing GDPR compliance at work.
Blog Post
Features
mins

movingimage complies with GDPR

You have all probably heard about the EU General Data Protection Regulation (GDPR) coming into force on May 25th, 2018. The GDPR has become a prominent theme over the past few years, especially within business environments. As it will soon affect every corporation in Europe, as well as any corporation that maintains a business relationship with Europe, we’ve prepared a succinct, summarized Q&A to shed some light upon movingimage’s compliance with GDPR.

Table of contents:

What is the GDPR?

The GDPR was designed to unify data privacy laws across Europe, to regulate companies’ personal data procedures, and to address the export of personal data outside of the EU. It includes the “right to be forgotten”, explicit confirmation of data processing, breach notification, and more. You can read more about the different specifications on Wikipedia.

When does the GDPR come into force?

Though approved by the European Parliament on April 14th, 2016, the transition period ends on May 25th, 2018, after which the GDPR will become officially enforceable.

What does “compliance” actually mean?

The GDPR has set a new standard for data protection and imposes companies to protect customers’ data accordingly or face hefty fines administered by supervisory authorities. Luckily, as mentioned above, movingimage complies with the GDPR: Not only did it implement the GDPR processes in 2017, but it also ensured that the legal data protection process is standardized as well as easy to implement, following the Privacy by Design standard.

Does the EU-U.S. privacy shield qualify as a compliance mechanism with GDPR?

No. Up until recently, companies could rely on the Privacy Shield Framework to comply with EU data protection requirements. However, on July 16, 2020, the European Union Court of Justice issued a judgment declaring the EU-U.S. Privacy Shield is an “invalid” mechanism to comply with EU data protection requirements when transferring personal data from the European Union to the United States. Consequently, companies must store their data within the EU to be considered GDPR-compliant. movingimage hosts data in European-based clouds, giving companies peace of mind that their data is always stored in compliance with GDPR. In addition, movingimage has concluded EU standard contract clauses with its contractual partners to ensure GDPR-compliant data processing for customers.

Compliance with GDPR: European Parliament

Which GDPR-compliant processes does the movingimage EVP cover?

movingimage offers comprehensive GDPR-compliant coverage, including internal and external processes. Internal processes:

  • Internal data processing index
  • Internal data protection policies for all departments
  • Internal erasure concept for personal data
  • Least privilege access rights
  • Regular staff and training sessions
  • External Data Protection Officer

External processes:

  • ISO27001-compliant infrastructure (Azure)
  • Application penetration tests following OWASP Top Ten
  • Central authentication service connecting to customers’ existing IDP
  • Role-based access management (RBAC), following least privilege concept
  • Extensive metadata + search index to document and find relevant information
  • Automated unpublish and deletion periods
  • EVP based on “Privacy by Design”
  • “Golden Source” de-publishing (de-publishing on all platforms with one click)
cta grey backgroundmobile cta grey background

The Enterprise Video Platform

One video platform, endless possibilities. Create, stream, manage, and analyze your videos with our all-in-one platform for the entire organization. Benefit from our video expertise and tailored solutions.
Request a demo
Grey backgroundmobile cta grey background

The Enterprise Video Platform

One video platform, endless possibilities. Create, stream, manage, and analyze your videos with our all-in-one platform for the entire organization. Benefit from our video expertise and tailored solutions.
Request a demo
Overline

Our Speakers

No items found.

What is the GDPR?

The GDPR was designed to unify data privacy laws across Europe, to regulate companies’ personal data procedures, and to address the export of personal data outside of the EU. It includes the “right to be forgotten”, explicit confirmation of data processing, breach notification, and more. You can read more about the different specifications on Wikipedia.

When does the GDPR come into force?

Though approved by the European Parliament on April 14th, 2016, the transition period ends on May 25th, 2018, after which the GDPR will become officially enforceable.

What does “compliance” actually mean?

The GDPR has set a new standard for data protection and imposes companies to protect customers’ data accordingly or face hefty fines administered by supervisory authorities. Luckily, as mentioned above, movingimage complies with the GDPR: Not only did it implement the GDPR processes in 2017, but it also ensured that the legal data protection process is standardized as well as easy to implement, following the Privacy by Design standard.

Does the EU-U.S. privacy shield qualify as a compliance mechanism with GDPR?

No. Up until recently, companies could rely on the Privacy Shield Framework to comply with EU data protection requirements. However, on July 16, 2020, the European Union Court of Justice issued a judgment declaring the EU-U.S. Privacy Shield is an “invalid” mechanism to comply with EU data protection requirements when transferring personal data from the European Union to the United States. Consequently, companies must store their data within the EU to be considered GDPR-compliant. movingimage hosts data in European-based clouds, giving companies peace of mind that their data is always stored in compliance with GDPR. In addition, movingimage has concluded EU standard contract clauses with its contractual partners to ensure GDPR-compliant data processing for customers.

Compliance with GDPR: European Parliament

Which GDPR-compliant processes does the movingimage EVP cover?

movingimage offers comprehensive GDPR-compliant coverage, including internal and external processes. Internal processes:

  • Internal data processing index
  • Internal data protection policies for all departments
  • Internal erasure concept for personal data
  • Least privilege access rights
  • Regular staff and training sessions
  • External Data Protection Officer

External processes:

  • ISO27001-compliant infrastructure (Azure)
  • Application penetration tests following OWASP Top Ten
  • Central authentication service connecting to customers’ existing IDP
  • Role-based access management (RBAC), following least privilege concept
  • Extensive metadata + search index to document and find relevant information
  • Automated unpublish and deletion periods
  • EVP based on “Privacy by Design”
  • “Golden Source” de-publishing (de-publishing on all platforms with one click)
cta grey backgroundmobile cta grey background

The Enterprise Video Platform

One video platform, endless possibilities. Create, stream, manage, and analyze your videos with our all-in-one platform for the entire organization. Benefit from our video expertise and tailored solutions.
Request a demo
Grey backgroundmobile cta grey background

The Enterprise Video Platform

One video platform, endless possibilities. Create, stream, manage, and analyze your videos with our all-in-one platform for the entire organization. Benefit from our video expertise and tailored solutions.
Request a demo
Overline

Our Speakers

No items found.
Trusted by leading companies

Voices from our customers

As part of our employer branding efforts, we focus entirely on the needs of our target groups. The seamless collaboration with movingimage enabled us to break new ground for the Charité. Together, we put together a digital event in a very short time. What an achievement!
Susanne Nitzsche, Leiterin Employer Branding and HR Digitalisierung - Charité - Testimonial
Susanne Nitzsche
Head of Employer Branding & HR Digitalization
Charite Logo
I always notice very quickly when working with service providers whether there is a fit. And when I have the feeling after 1-2 events that these service providers are becoming “friends”, I know that we agree and that it works together. And we have that feeling with movingimage.
Karl Turner, Inhaber & Strategischer Berater | turner & friends - testimonial
Karl Turner
Owner & Strategic Consultant
turner & friends logo
Thanks to the continuous development of its products, movingimage is also a constant source of inspiration for using new functions and thinking ahead on certain topics. And that is incredibly enriching for us.
Martina Herak, IT Business Analystin - Union Investment - Testimonial
Martina Herak
IT Business Analyst
From our blog

Insights, tips, and inspiration

Stay up to date with the latest trends, best practices, and expert advice from the world of corporate video.
Visit the Knowledge Center
A woman organizing videos on a laptop thanks to VideoManager Pro
Blog Post

Automating video management: the power of AI for modern businesses

Read More
Video security and data protection
Blog Post

Security and data protection for all your videos

Read More
KI-gestützte Video-Features
Blog Post

AI video features

Read More
Sales Enablement mit Videos
Blog Post

Sales enablement with video: effective training for your sales team

Read More
Virtuelle Weihnachtsfeier
Blog Post

The virtual Christmas party 2021: ideas, tips and templates

Read More
Virtuelle Team-Events
Blog Post

How to make virtual team events a success

Read More
Get in touch

Meet our video experts

Our experts are here to support you. Book a free consultation to discuss your specific use case and discover the best video solution for your needs.
Contact us