There have been vast changes since the 1995 introduction of the Data Protection Directive that is being replaced. In this edition, we remind the legal framework and enter the discussion of how the GDPR is being handled by Banks. We share the lessons learned, the challenges and give recommendations. Finally, we welcome our readers to put themselves in the shoes of a DPO and tackle the complexity of GDPR with a PAI.