Data Minimization: Key Principles for GDPR Compliance

Data Minimization: Key Principles for GDPR Compliance

Data minimization is not only a question of volume, but also of the nature of the data. As a result, organizations should consider using encrypted, aggregated, deidentified, or anonymized datasets whenever possible to reduce identification risks. In addition, information should only be retained for the legally and effectively required periods of time, and then promptly, securely destroyed to limit the timeframe during which personal information may be accessed. Yes, data…