This program discusses the requirements of the EU General Data Protection Regulation (“GDPR), which becomes effective May 2018, with specific focus on the obligations that the GDPR imposes on vendors (and their clients) through Article 28. The program explores practical ways in which companies have attempted to modify their contractual arrangements to account for those changes. A must program for in-house, corporate and compliance counsel for companies needing to comply with the new European data privacy and security regulations.