In order to achieve GDPR alignment you should be able to demonstrate that you have
Performed an audit of internal controls and processes.
Reviewed privacy risks.
Reviewed supplier relationships and the potential associated liabilities.
Demonstrate “Accountability” with documentation for the processes undertaken.
Audited the data you hold for the lawfulness of your processing and legal conditions for consent.
Demonstrated transparency by publicising your retention, information security and privacy strategy, in a clear and unambiguous form (via your privacy notice)
Have a clear and informed process for handling data breaches.
This list is designed to help you understand the areas that you need to include in your approach to compliance and does not represent a complete list of requirements.
Get a free consultation
How certain can you be that all your legal obligations are met? The Compliance Consultancy will give your business a simple audit completely free of charge. There are 2 ways to protect yourself, full compliance or enough to make changes to keep you out of trouble.