Moreover, GDPR rules apply to controllers and processors, so clouds are not exempt from enforcement. Thus, any company doing business in Europe must be ready to comply with GDPR. The regulation stipulates that businesses must protect EU citizens’ personal data and privacy for transactions occurring within EU member states. The European Union (EU) General Data Protection Regulation ( GDPR) is being touted as “the most important change in data privacy regulation in 20 years.” The GDPR was approved in April 2016 to replace the Data Protection Directive 95/46/EC and will be enforced beginning May 25, 2018.