Conversation

Session Chair: Rahul Matthan (Trilegal). Speakers: Justin Weiss (Global Head of Data Privacy, Naspers-Prosus), Idriss Kechida (Chief Privacy Officer, Match Group) and Srinivas Poosarla (Global Chief Privacy Officer and DPO, Infosys) #PrivacyNama2021
1
How large must internal data protection teams be for companies? - You could have everything centralized and a massive privacy team or you could have individual teams who are trained to apply the data protection legislation. - Idriss Kechida (Match Group) #PrivacyNama2021
1
Starting point in complying with new data rules: The first step is the CEO themselves and the executive team. You explain to them the full range of activities that will occur. They will do what is necessary to give you resources. Justin Weiss (Naspers-Prosus) #PrivacyNama2021
1
What occupies the most time for orgs? It is training. Training isn't just once per year. You are in the weed w each dept figuring out what they can do for privacy. So that there can be privacy by design. - Justin Weiss (Naspers-Prosus) #PrivacyNama2021
1
What budget should be set aside for data protection teams within companies? - I consider it in categories: at least one person (salary is mid-level lawyer), cost of automation (annual licenses), and costs involved for training. - Justin (Naspers-Prosus) #PrivacyNama2021
1
There are lots of overlap between legislations. My company we go for global standards that map principles of multiple jurisdictions. Only time there are issues is if there is conflicting legislation, which is not often. - Srinivas Poosarla (Infosys) #PrivacyNama2021
1
Ninety percent of what people around the world expect as privacy overlaps. But even if you build something that is global that very same feature might be experienced differently by diff regions. - Justin Weiss (Naspers-Prosus) #PrivacyNama2021
1
Setting standard for foreign countries (adequacy requirements) in the bill is not very helpful. In Europe this posed problems. Avoid the rigidity of language in the law that restricts data flows. - Justin Weiss (Naspers-Prosus) #PrivacyNama2021
1
Our bill has embodied best practices from the world and adapted it for out cultures. Some areas where I see possibility of improvement is consent and localization aspects. Localization should be kept separate from this law. - Srinivas Poosarla (Infosys) #PrivacyNama2021
1
We went into a rabbit hole just as we expected. Probably one of the most substantial conversations that has gone into the gritty-nitty of what's next. - @PrivacyNama2021
1