Business owners are responsible for ensuring their business complies with GDPR. Not sure if you need our help? You might want to consider:
- When was the last time you reviewed your Privacy Notice or Cookies Policy?
- Are you confident your marketing complies with data protection and ePrivacy laws?
- Do you use other businesses to undertake some of your work? If so, do you have contracts or sharing agreements?
- How are you collecting and recording consents from individuals?
- Do you have people sending you personal data access requests or data erasure requests?
- Do you know what a Data Protection Impact Assessment is?
What you need for GDPR accountability and compliance
All businesses need these accountability and governance measures in place:
- Internal policies and procedures to help your management and staff understand their data protection obligations and GDPR and business rules. These include a Data Protection Policy, Information Security Policy and Records Management Procedures.
- Records of processing activities documentation.
- Privacy Notices telling individuals what you are doing with their personal data. Data Protection Impact Assessments to identify and minimise data protection risks in relation to your processing activities.
- Recording procedures for data breaches and reporting any to the Information Commissioner’s Office (ICO).
- Appointing a Data Protection Officer where necessary.
How we can help?
Compliant template documents
From privacy notices to data protection policies, we can supply iron-clad template documents to cover you.
Data process contract
Do you outsource personal data processing to another business? Perhaps to an external HR adviser? We offer data processor contract services.
Data sharing agreement
If you share personal data with another business, then you will need a data sharing agreement.
Full GDPR implementation packages
You can of course buy one-off templates from us. But it might be more cost-effective to opt for a package.
Whatever the size of your business, we have packages to help you implement your GDPR including:
- data protection assessment and compliance
- data processor contracts
- policy and procedures
- privacy notices
- data protection impact assessment
Don’t get caught out
In 2020 the Danish Data Protection Authority known as Datatilsynet announced that they had suffered a personal data breach. A member of staff saw paper waste containing confidential and sensitive information about staff and the public rather than secure shredding.
Take the first step towards peace of mind
Want a chat about how we can support your GDPR accountability? Simply call us on 07534258800 or email samantha@dunwelldataprotection.co.uk
More ways we can help
Check out our other data protection and ePrivacy services.