GDPR Compliance Step 9 - Technical and Security Measures

Steps to GDPR Compliance: Security and Technical Measures

Posted · Add Comment

Step 9 – ISO27001: A Data Privacy Odyssey: How to Demonstrate Technical and Security Measures Under the GDPR Introduction Under current privacy laws, only one of the privacy principles applies directly to a data processor, and that is to ensure that adequate security and technical measures are in place.  The GDPR mirrors this obligation on […]

GDPR_step 7

Steps to GDPR Compliance: Data Breach

Posted · Add Comment

Step 7 – Data Breaches “Once more unto the breach….” Why galvanising your troops to deal with data breach is a key part to compliance with the GDPR Introduction to data breaches The GDPR introduces a duty on organisations to report certain data breaches to their supervisory authority (Article 33) and, in some cases, to […]

GDPR_step 6

Steps to GDPR Compliance: Privacy Impact Assessments

Posted · Add Comment

Step 6 – Use Privacy Impact Assessments to Measure the Impact of Data Processing Operations Crash Test Dummy – Why every prudent processor of data should use Privacy Impact Assessments (PIA) We all feel more secure when we get into our cars knowing they are kitted out with multiple safety features developed through testing and […]

GDPR_step 5

Steps to GDPR Compliance: Vendor Management

Posted · Add Comment

Step 5 – Vendor Management Through the GDPR looking glass… “She generally gave herself very good advice, (though she very seldom followed it)” – Why all entities processing data should follow the “very good advice” to “know your Vendor” Introduction In Step 2 of our GDPR blog series, we talked about the importance of data mapping, […]

Steps to GDPR Compliance: Subject Access Rights

Posted · Add Comment

Step 3 – Subject Access Rights “What you looking at?” Will subject access rights become the Vogue under the GDPR? What changes will there be to the current regime? Based on what we know for now, the GDPR subject access request (“SAR”) process will be similar to that under the current regime. The key changes […]

GDPR_step 2

Steps to GDPR Compliance: Data Mapping

Posted · Add Comment

Step 2 – Data Mapping Follow the yellow brick road Why data map Data mapping should be a key element in any organisation’s compliance strategy, including any pre-employment screening policy. The prospective employer (data controller) can face questions from its candidate base about where their personal data is being sent and how it is used. […]

Top 10 HireRight Blogs of 2016

Posted · Add Comment

2016 has seen some interesting shifts in background screening, with new trends becoming apparent, new legislation in some industries, and some important legal changes in data. Recap our top news of the year with our top 10 blogs of 2016. We’ll see you next year!   How to Create a Great Candidate Experience – the […]