GDPR
Recent posts on
GDPR

Chatbots and Personal Data: Benefits and Risks
Published on:
6 Apr
2023
This blog considers at high-level various possible legal ramifications of using Chatbots, especially ChatGPT, concerned with data protection risks.
Read more

How to Create a Record of Processing Activities (ROPA)
Published on:
10 Jun
2022
In this blog, we will outline a step-by-step procedure on how you can create a ROPA.
Read more

Who Needs a ROPA and Why?
Published on:
8 Jun
2022
Under the UK GDPR, the majority of organisations processing personal data are required to create and maintain a ROPAs
Read more

GDPR
Published on
6/2/2023
Analysis of Fines Imposed by the Information Commissioner’s Office in 2022When looking to comply with the General Data Protection Regulation (GDPR), it is always a worthwhile exercise....

GDPR
Published on
5/10/2022
Avoiding Email Data Security BreachesFor all of us, email can be both a blessing and a curse. On one hand you have the speed and convenience of communication....

GDPR
Published on
25/7/2022
What is the UK International Data Transfer Agreement and What Are the Implications?On 2 February 2022, the Information Commissioner’s Office (ICO) laid before Parliament changes around restricted international personal data transfers.

GDPR
Published on
25/7/2022
Data Transfer Risk AssessmentWe are focussing on transfer risk assessments (TRAs), commencing with the background that led to their introduction and then addressing the five questions.

GDPR
Published on
25/7/2022
What is the GDPR?The GDPR (EU) 2016/679 is an EU regulation which came into effect on 25 May 2018 and set a new benchmark for the processing of personal data.

GDPR
Published on
25/7/2022
The CJEU Declares the EU-US Privacy Shield Invalid and SCCs ValidOn 16 July 2020, the CJEU issued its judgement on the adequacy of both the Privacy Shield and standard contract clauses (SCCs).

GDPR
Published on
25/7/2022
What is the Purpose of ISO 27701 and What Benefits Does it Bring?The need for guidance on how organisations should best protect privacy and manage personal information has never been more pertinent.

GDPR
Published on
25/7/2022
ISO 27701:2019 and the GDPRThe EU GDPR and the UK DPA both require organisations to protect and ensure the privacy of any personal data which they process.

GDPR
Published on
25/7/2022
In-house Resource vs Virtual DPOThis blog takes a look at DPOs and considers when to look in-house and when a virtual, external resource or hybrid resource may be a better option.

GDPR
Published on
22/7/2022
Verifying the Identity of Someone Requesting Information Under the GDPR We look at the requirement within both the DPA and the GDPR to verify the identity of an individual making a request before acting or releasing information

GDPR
Published on
22/7/2022
Data Protection and Management System Standards – Which is Best for Me?Is there a catch-all international standard that effectively proves external verification of data protection compliance?

GDPR
Published on
22/7/2022
Transferring Personal Data Outside of the EEAThis blog looks at a very specific area of the GDPR - Article 28 and data transfer outside of the EEA.

GDPR
Published on
22/7/2022
Supply Chain Compliance with the GDPRThis blog focuses on an aspect of the GDPR which can be particularly challenging for a number of organisations.

GDPR
Published on
22/7/2022
What is the Difference Between Personal Data and Sensitive Personal Data?There is some confusion about the difference between personal data and sensitive personal data and even whether sensitive personal data exists as a term!

GDPR
Published on
22/7/2022
Tips on Demonstrating UK GDPR ComplianceWe provide some questions which should help you in determining your level of compliance with the GDPR

GDPR
Published on
22/7/2022
Are you adequately covering GDPR within your ISMS?We have seen an increased focus on the General Data Protection Regulation (GDPR) by certification body (CB) assessors when conducting ISO 27001 audits.

GDPR
Published on
21/7/2022
BS 10012:2017 – What are the Benefits and How Do I Achieve Certification BS 10012 is a standard which has been developed to enable organisations to implement a personal information management system (PIMS).

GDPR
Published on
21/7/2022
Gaining Senior Management Buy-In to GDPR ComplianceWhy can it still be challenging to gain traction on your GDPR compliance project?

GDPR
Published on
21/7/2022
THE GDPR – 5 Myths DispelledThe adoption of the General Data Protection Regulation (GDPR) in April 2016 had wide-ranging impacts. These affect all organisations.

GDPR
Published on
21/6/2022
When and How to Conduct a Data Protection Impact Assessment (DPIA)A DPIA delivers a pre-emptive approach to assessing these risks, and can prevent a data breach occurring. We present an outline of steps in conducting a DPIA

GDPR
Published on
13/6/2022
UK International Data Transfer AgreementDTA and the UK Addendum to the current European Commission’s SCCs re the next steps in providing a transfer tool for complying with the UK GDPR.

GDPR
Published on
10/6/2022
How to Create a Record of Processing Activities (ROPA)In this blog, we will outline a step-by-step procedure on how you can create a ROPA.

GDPR
Published on
8/6/2022
Who Needs a ROPA and Why?Under the UK GDPR, the majority of organisations processing personal data are required to create and maintain a ROPAs
URM is renowned for helping organisations to achieve the optimum balance when implementing an ISMS.
Find out more
How URM can help?
Consultancy
Do you need assistance in improving your GDPR compliance position?
URM can offer a host of consultancy services to improve your DP policies, privacy notices, DPIAs ROPAs, privacy notices, data retention schedules and training programmes etc.
Read more
Consultancy
Does your organisation fully comply with the General Data Protection Regulation (GDPR)?
If uncertain, URM is able to conduct a high-level GDPR gap analysis which will assist you understand your current levels of compliance and identify gaps and vulnerabilities.
Read more
Consultancy
Gain a sound grounding and practical interpretation of the GDPR and the DPA 2018!
By attending URM’s online BCS Foundation Certificate in Data Protection course, you will gain valuable insights into the key aspects of current DP legislation including rights of data subjects and data controller obligations.
Read more
"
Thank you for an excellent webinar!
Webinar 'Maximising the Benefits from your Penetration Tests'
contact US
Let us help you
Let us help you in your compliance journey by completing the form and letting us know how we can best support you.