What's the geek take on the GDPR?

The amount of geekery and hackage required to bring companies into compliance with the EU's General Data Protection Regulation (aka GDPR) must be huge. I say that for five reasons:
- The fines for violating the regulation's rules are attention-forcing (up to 4% of global turnover in the prior fiscal year);
- The deadline for compliance is 25 May, just 78 days from now.
- Nearly every booth at every trade show I've been to in Europe over the last year or so features the GDPR in its promotional verbiage. (The one above is courtesy of the Port.im booth at the PIE 2017 conference last November in London.)
- Many (maybe all) the developers I know and work with are busy addressing the GDPR as a Big Issue.
- All that compliance stuff must require a lot new technical work.
So I'm looking to get some perspective on this from geeks doing that work, and from others who simply know about it and have useful tings to say. If you're in either group, please weigh in on the comment stream below. Thanks!