EU flag Fines are not the only punishment European regulators can enforce on a company that fails to comply with its General Data Protection Regulation, which is now a year old. (Photo: Shutterstock)

Just shy of one year into the European Union's General Data Protection Regulation, companies and their risk managers should double-check they are keeping up with the law or face fines and other punishments, according to experts.

The GDPR was implemented May 25, 2018. In its first year, fines were not as large as anticipated.

Want to continue reading?
Become a Free PropertyCasualty360 Digital Reader

Your access to unlimited PropertyCasualty360 content isn’t changing.
Once you are an ALM digital member, you’ll receive:

  • Breaking insurance news and analysis, on-site and via our newsletters and custom alerts
  • Weekly Insurance Speak podcast featuring exclusive interviews with industry leaders
  • Educational webcasts, white papers, and ebooks from industry thought leaders
  • Critical converage of the employee benefits and financial advisory markets on our other ALM sites, BenefitsPRO and ThinkAdvisor
NOT FOR REPRINT

© 2025 ALM Global, LLC, All Rights Reserved. Request academic re-use from www.copyright.com. All other uses, submit a request to [email protected]. For more information visit Asset & Logo Licensing.

Dan Clark

Dan covers cyber security, legal operations and intellectual property for Corporate Counsel. Follow him on Twitter @Danclarkalm.