Updated: July 16, 2020 (September 20, 2017)

  Analyst Report

Online Service Terms Address GDPR

My Atlas / Analyst Reports

559 wordsTime to read: 3 min
Michael Cherry by
Michael Cherry

Michael analyzed and wrote about Microsoft's operating systems, including the Windows client OS, as well as compliance and governance. Michael... more

The Sept. 2017 update to the Online Services Terms (OST), which cover Microsoft hosted services such as Azure and Office 365, includes updates to reflect new requirements to comply with the European Union (EU) General Data Protection Regulations (GDPR). Organizations that collect or process the personal data of EU citizens using Microsoft’s hosted services need to comply with these regulations by May 2018 or face significant penalties. Although Microsoft is taking steps to ensure its services can be used within the requirements of the GDPR, the ultimate responsibility for compliance with the GDPR likely lies with the organizations using the services.

Changes to the OST

In Feb. 2017, Microsoft announced its hosted services would comply with the GDPR. The GDPR includes approximately 160 requirements for how organizations collect, store, and process personal information. For example, in the event of a breach that results in the loss of control over collected personal data, the breached organization has only 72 hours to notify all impacted parties, including government regulators and affected individuals.

Atlas Members have full access

Get access to this and thousands of other unbiased analyses, roadmaps, decision kits, infographics, reference guides, and more, all included with membership. Comprehensive access to the most in-depth and unbiased expertise for Microsoft enterprise decision-making is waiting.

Membership Options

Already have an account? Login Now