Personal Data Protection

UK GDPR

Demonstrating compliance with the UK GDPR – the 12 steps – Part 2

Last month we started looking at the 12 steps which organisations should have taken to prepare for the introduction of GDPR. This is still a very useful approach for determining your compliance status. In the previous blog we looked at the first four steps. Here we will look at steps 5-8: 5. Data subject access […]

Demonstrating compliance with the UK GDPR – the 12 steps – Part 2 Read More »

Photo representing Common Data Breaches

Common Data Breaches

The Information Commissioners Office (ICO) defines a personal data breach as “a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to, personal data. This includes breaches that are the result of both accidental and deliberate causes.”  Organisations may need to report a personal data breach to

Common Data Breaches Read More »

Data Protection mind map

Do you need a Data Protection Certification?

Certification regarding personal data protection can often be confusing and a source of conjecture amongst business owners and data protection practitioners. There is currently, as we go to press with this blog, no one all-encompassing GDPR Certificate.  A recent information technology publication from 2021 suggested that: “Organisations simply need to comply with the GDPR (or

Do you need a Data Protection Certification? Read More »

UK GDPR

Does your organisation have a UK GDPR compliant Document Management system in place?

The first question we need to answer is: What is a document management system (DMS)?  Simply, it is a means of receiving, tracking, managing, and storing documents that is line with your data protection and privacy policies.  A query we get quite often at CSRB is, does UK GDPR apply to hard copy documents? The

Does your organisation have a UK GDPR compliant Document Management system in place? Read More »