Case studies
In this section, we will discuss the practical GDPR cases for the GDPR implementation issue, with suggested approaches or open source tools. The cases will cover data discovery, database anonymization, cookie consent, data masking, and website privacy. These are typical practical scenarios that directly relate to GDPR compliance.
Case 1 – personal data discovery
Company A has been running several services and databases with lots of legacy-running applications for several years. The database and IT administrators would like to do personally identifiable information (PII) scanning to gain an overview of all the personal data distribution status. In this case, company A would need a PII discovery tool, which can define the PII data type, and be able to search for various kinds of files and databases. Take a look at this diagram:

For an open source tool, the RedataSense data discovery tool is recommended, since it supports multiple databases and can identify personal data by a dictionary...