The new regulations place significant emphasis on the proper implementation of these provisions within the functioning of organizations and in the processes of data they process. Among other things, they introduce the key principle of accountability. The data controller will be held accountable for the application of the provisions of the General Data Protection Regulation and their implementation within their organization, rather than for the application of unnecessary procedures such as changing passwords to the IT system every 30 days.
The meeting was attended by the General Inspector of Personal Data Protection, Dr. Edyta Bielak-Jomaa, who acknowledged that we are witnessing a revolution in the area of personal data protection regulations. In her opinion, the reform primarily aims to keep pace with the ubiquitous digitization and new technologies. Witold Kołodziejski – Secretary of State in the Ministry added that the new regulations are also intended to build trust in the digital environment.
Prof. Dr. Hab. Paweł Fajgielski pointed out that the goal of the reform of personal data protection regulations was also to unify the law across all member states. However, we cannot speak of full unification due to the fact that some issues have been left for clarification by national legislators. For example, member states have the option to regulate on their own: further conditions for processing genetic data, biometric health data; they will be able to specify additional situations in which the appointment of a Data Protection Officer will be mandatory, establish a lower age limit for children using information society services; define the qualifications and operational principles of the supervisory authority, etc.
The meeting took place under the patronage of the Foreign Affairs and European Union Committee, the Human Rights, Rule of Law and Petitions Committee of the Polish Senate, and the General Inspector of Personal Data Protection.
More information about the course of the meeting can be found HERE.


