Last Updated on June 19, 2026 by Narendra Sahoo
General Data Protection Regulation is a data privacy law established in the EU. The regulation is an effective and popular law that helps protect the privacy of the data and also governs the rights of citizens of the EU. The regulation clearly outlines requirements for organizations to ensure data privacy and uphold the rights of individuals. Currently, under the GDPR Regulation, the law upholds 8 crucial rights of data subjects whose data is processed by businesses for commercial purposes.
Explaining these rights we have shared a pictographic representation of the rights outlined in the GDPR Regulations with details explaining each right under the law established for the data subject.

Narendra Sahoo (PCI QSA, PCI SSFA, CISP, CISA, CRISC, 27001 LA) is the Founder and Director of VISTA InfoSec, a global information security consulting firm. With 21 years of experience in information security consulting, assessment and compliance services, Narendra has helped organizations address complex cybersecurity and regulatory requirements across global markets.