OA Foot Steps GDPR Working Group
OA Footsteps GDPR Policy Development
OA Footsteps is forming a committee to develop a robust GDPR policy for the organization and we would love to have your help. This policy will be based on the comprehensive policies of the Virtual Region of Overeaters Anonymous, adapted to suit the specific context of OA Footsteps.
The goal is to ensure the protection of members’ data while upholding the core values of OA, particularly the principle of anonymity.
The committee will address key GDPR principles:
- Lawful Processing: Define the specific purposes for which data will be collected and used, ensuring they are legitimate and align with GDPR.
- Data Minimization: Determine what data is absolutely necessary to collect and avoid collecting unnecessary personal information.
- Storage Limitation: Establish clear data retention schedules, outlining how long different data types will be stored.
- Security: Implement robust security measures, including strong passwords, encryption, and secure cloud storage.
- International Data Transfers: Develop a clear plan for handling data transfers outside of Europe, especially for EU members, ensuring compliance with GDPR requirements.
- Right of Access: Create a process for handling Subject Access Requests, balancing the right of access with OA’s principle of anonymity.
- Data Breach Response Plan: Outline steps for responding to data breaches, including reporting procedures and a process for addressing breaches.
If you are interested in contributing to the development of OA Footsteps’ GDPR policy, please attend the upcoming committee meeting – Tuesday, January 21, at 12.30 pm Eastern. Here are the meeting details:
https://teamup.com/event/show/id/NSjjUJRX2Mz8SZLPQCTNnurKkZr1w4
In Loving Service,Renee D
OA Foot Steps Chair