Saturday

14th May 2022

Stakeholder

Privacy by design: the fewer data the better

  • We will move to a new generation of privacy-aware consumers. (Photo: European Commission)

The deal over the new General Data Protection Regulation (GDPR), agreed on 15 December, promises to raise the bar for personal data protection across the world.

The new regulation, which should become effective in 2018, replaces the old EU Data Protection Directive of 1995 and will be directly applicable in 28 EU states.

Read and decide

Join EUobserver today

Become an expert on Europe

Get instant access to all articles — and 20 years of archives. 14-day free trial.

... or subscribe as a group

The GDPR will bring EU law up-to-date with today's trailblazers, such as globalisation, social networks and cloud computing, and aims to rebuild consumer trust in the face of data thefts, while growing the digital economy and levelling the playing field for industry through harmonisation.

As the four-year drafting and approval process through the European Commission, European Parliament and Member States has proven to be a complex affair, eliciting a huge number views and opinions, and lots of discussion, the GDPR is a positive step.

Huawei takes the position of strict adherence as far as personal data protection is concerned – and worldwide, not just across the EU28. Our products and services protect data by default.

To ensure this, Huawei uses the Privacy By Design approach. What does this mean? We define PBD as: protecting the user, by handling the minimum amount of private data, to deliver the best possible experience, for information-based services.

We can only build consumer confidence and trust through transparency. An attitude of "collect everything so that we can figure out business models in the future" is unacceptable. We must use the minimum amount of data, and for explicit purposes, and the consumer must know that we are doing this – and only this.

Huawei uses a 5-step implementation process for PBD, involving:

- Leadership: this starts at the top, and executive support is critical. In Huawei, the tone is set by our Rotating CEO, Ken Hu, who chairs our global privacy committee and takes an active interest in the topic

- Business Conduct Guidelines (BCG): privacy is incorporated into our BCG, which all members of staff sign. It is also included in our disciplinary code, to ensure that PBD is not a one-off initiative, but a standard way of conducting business

- Awareness and training: this is key to ensuring ongoing attention to the subject at all levels of the organisation, as every employee must play their part

- Development: Huawei adopted the Privacy Impact Assessment Framework (PIAF), published by the EU in December 2012. This is now embedded into our product and software development lifecycle and extends into operations

- 9 Underpinning Principles include transparency at all levels, along with informed consent, minimal data, integrity, and ownership retention.

Privacy will continue to evolve and change shape, and many challenges lie ahead. Consumers, for example, do not always act as legislators or regulators think they will or should act. User buying patterns suggest that, while they are concerned about privacy, this is not always reflected in their decisions.

They don't always want vendors to have tight controls over data management. If their phone is broken, for instance, they simply want it fixed as soon as possible, and are willing to cede data to see that happen. So education for our customer-facing employees will be very important for the future and will need to be constantly reinforced.

In addition, culture, circumstance and history all have an impact at a local level and can mean important differences in understanding, which requires constant attention to detail.

Cross-industry collaboration is key in this respect, and this is why Huawei works with the International Association of Privacy Professionals, precisely to share and learn about such matters.

However, as the GDPR is published, adopted and becomes law over the months to come, industry and consumers are still only part way down the path to ensuring maximum data privacy.

As the debate evolves, and consumers start to execute their buying power with privacy as a purchasing criteria, we will move from compliance and "operationalising" the principles, to a new generation of privacy-aware consumers. And we need to service that societal transformation to the full.

Author bio

David Francis has recently been appointed as Huawei's Cyber Security Officer for the UK market.

Disclaimer

This article is sponsored by a third party. All opinions in this article reflect the views of the author and not of EUobserver.

The CPDP conference wants multidisciplinary digital future

During the Computers, Privacy and Data Protection (CPDP) conference, many high-level discussions will touch upon the dynamics of decision-making in the design of new technologies, including the importance of inclusion, diversity, and ethics perspectives within these processes.

Democracy dies in darkness

As the Washington Post's header always reads "Democracy Dies in Darkness". The biggest threat to a dictator like Vladimir Putin is an informed populace. Let us do everything we can to make that threat loom larger.

EU, wake up! Don't leave West Balkans to Russia or China

Russia's attack on Ukraine and European values must remind us how important the enlargement process is, if properly conducted, as a motor for democracy, freedom, peace, the rule of law and prosperity, write six S&D MEPs.

Podcasts: Nordic voices on the green transition

How close are we to battery-powered planes? What effect has Greta Thunberg had on the attitudes of her fellow Swedes? Is small-scale farming the future? These are some of the questions up for discussion in a new podcast series.

EU, wake up! Don't leave West Balkans to Russia or China

Russia's attack on Ukraine and European values must remind us how important the enlargement process is, if properly conducted, as a motor for democracy, freedom, peace, the rule of law and prosperity, write six S&D MEPs.

Dialogue and action – Nordic cooperation and view on COP26

Nordic countries launched several initiatives at the COP26 climate conference which will have a real impact on the ground. Nordic and UK pension funds are to invest billions in clean energy and climate initiatives. Greenland has joined the Paris Agreement.

News in Brief

  1. EU to donate extra €400m for Africa vaccines rollout
  2. Spain plans five-days 'menstrual leave' and to ease abortion rules
  3. MEPs reject proposal for stricter 2030 target on cars and vans
  4. Study: EU spent €341m on AI border technology
  5. Over 100 million Europeans remain unvaccinated
  6. EU agency: Distrust in police means fewer crimes reported
  7. Finland announces Nato membership bid
  8. Ukraine foreign minister in Brussels next week

Stakeholders' Highlights

  1. Nordic Council of MinistersClear to proceed - green shipping corridors in the Nordic Region
  2. Nordic Council of MinistersNordic ministers agree on international climate commitments
  3. UNESDA - SOFT DRINKS EUROPEEfficient waste collection schemes, closed-loop recycling and access to recycled content are crucial to transition to a circular economy in Europe
  4. UiPathNo digital future for the EU without Intelligent Automation? Online briefing Link
  5. Nordic Council of MinistersHuge support for Ukraine
  6. EFBWW – EFBH – FETBBWorkers want EC to limit subcontracting chains in construction

Latest News

  1. Russia sanctions and energy dominate Next WEEK
  2. Will 'Putin's Nato' follow Warsaw Pact into obscurity?
  3. EU reaches deal on flagship cybersecurity law
  4. EU to help Ukraine export grain — amid food shortages fears
  5. Revealed: Big Oil shaped EU's gas-cutting strategy
  6. EU: Ukrainians hesitating to register for protection
  7. UK says 'no choice but to act' over post-Brexit trade rules
  8. The EU Parliament Covid inquiry: the questions MEPs must ask

Join EUobserver

Support quality EU news

Join us