Life with GDPR

Episode 31-Lessons Learned in Year 1 of GDPR, Part 1


Listen Later

In this podcast, data privacy/data security expert Jonathan Armstrong and Compliance Evangelist Tom Fox use the framework of GDPR to discuss a wide range of issues relating to these topics. They consider what the US compliance and InfoSec security expert needs to know about what is happening in the UK, Europe and beyond. In this episode, we begin a three-part series of some of the key lessons learned from the first year of GDPR. Some of the highlights in this episode include:

Do you have a plan? You need to have a plan for a data breach because it is not if but when you will be hacked. Armstrong advises you can be two plans; one for all employees which is straight-forward so that all employees will be able to understand it. You should have a second plan, which you rehearse which is for all compliance/IT/data security. It should be process driven so it allows flexibility for those responding.

Know your data and know your third parties. Many companies have disaggregated data because they have so many vendors and platforms where data is stored. You must know who has your data. Do you have visibility into 3rd, 4thand 5thparties from the data perspective? You should also capture where data is going in an organization, particularly customer and employee data. Finally, and sadly overlooked by many US companies is the question of data protection of a US parent when a UK/EU sub is audited?

Assemble your data response team now and practice, practice, practice.You need to look at your data security response. What does the A Team teach you about data response? You should strive for strength in diverse skills and practice your response. Look at PR rapid response, your compliance, your legal response all in addition to your IT/data security response. Regulators looking at share price drop off, this shows the need for a rapid, practiced response.

For more information on Cordery Compliance, go their website here.

For more information on data breaches, see here.

Also check out the GDPR Navigator, one of the top resources for GDPR Compliance by clicking here.

Learn more about your ad choices. Visit megaphone.fm/adchoices

...more
View all episodesView all episodes
Download on the App Store

Life with GDPRBy Tom Fox

  • 5
  • 5
  • 5
  • 5
  • 5

5

1 ratings


More shows like Life with GDPR

View all
Global News Podcast by BBC World Service

Global News Podcast

7,728 Listeners

Economist Podcasts by The Economist

Economist Podcasts

4,255 Listeners

Money Talks from The Economist by The Economist

Money Talks from The Economist

924 Listeners

The Privacy Advisor Podcast by Jedidiah Bracy, IAPP Editorial Director

The Privacy Advisor Podcast

64 Listeners

Smashing Security by Graham Cluley & Carole Theriault

Smashing Security

314 Listeners

Up First from NPR by NPR

Up First from NPR

55,933 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,855 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

167 Listeners

Forklart by Aftenposten

Forklart

99 Listeners

The World in Brief from The Economist by The Economist

The World in Brief from The Economist

1,078 Listeners

Serious Privacy by Dr. K Royal, Paul Breitbarth & Ralph O'Brien

Serious Privacy

24 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

117 Listeners

Masters of Privacy by Sergio Maldonado

Masters of Privacy

5 Listeners

PrivacyPod by Podcast Ensemble

PrivacyPod

0 Listeners

The Data Chronicles by Hogan Lovells

The Data Chronicles

9 Listeners