The Isle of Man’s GDPR and LED Implementing Regulations 2018, made under the Data Protection Act 2018, come into force today, applying the GDPR standard on the Island.
Key points
- Overseen by the Isle of Man Information Commissioner.
- Security measures and breach notification within 72 hours are required.
- Controllers and processors must register and pay fees.
- The Isle of Man seeks to maintain its EU adequacy status.
UK organisations using Isle of Man-based service providers, or with operations on the Island, should ensure their arrangements reflect the local law.
Need help understanding what this change means for your organisation? Get in touch for a pragmatic, no-obligation conversation.