The changes brought about by GDPR can be overwhelming especially for smaller businesses. It is important however to get to a place as a business where you are able to demonstrate GDPR compliance.
A key principle of the GDPRis the processing of personal data securely by means of 'appropriate technical and organisational measures' also known as the 'security principle', meaning that you now have a statutory responsibility to process personal information in such a way that is secure.
Where personal information is stored on electronic systems it is important to check where the servers and other IT equpment used to store information are located.
In the event of a data breach, you have a statutory duty to report certain types of personal data breaches. You must do this within 72 hours of becoming aware of the breach, where feasible. If the breach is likely to result in a high risk of adversely affecting individuals' rights and freedoms, you must also inform thos individuals without undue delay.
The ICO can impose substantial financial penalties (fines of up to 20million Euros/2-4% of your annual turnover) but also issue warnings and reprimands, impose temporary or permanent ban on data processing, order the rectification, restriction or erasure of data and supspending data transfers
Bespoke training courses for GDPR Procedures for IT Systems are designed according to the systems implemented and the type of data that is being stored and processed and for what purpose. Courses are effectively broken down into units according to skill level and user roles.
Below are just some of the units which may be included:
These courses can be delivered in our training suite or on your company premises at your convenience, tailored to focus on specific areas of data collection and processing policies.
To discuss how we can help you and for a Free One Hour Consultation please contact us.