think S3 | Cloud Solutions & Managed Services | Microsoft Gold Partner
think S3 | Cloud Solutions & Managed Services | Microsoft Gold Partner
Cloud Solutions & Managed Services | Microsoft Gold Partner
  • think Cloud
    • S3 Cloud Service Overview
    • Microsoft Azure Overview
    • Azure Workshops
    • Azure Reserved Instances
    • Windows Virtual Desktop
    • Citrix in Azure
    • Amazon Web Services Overview
    • HPC
    • IoT
    • IaaS
      • Compute
      • Network
      • Storage
      • Monitoring and Management
      • Archive
    • PaaS
      • Web & Mobile
      • Containers
      • Databases
    • Office 365
      • Office 365 Subscriptions
      • Microsoft 365
      • Office 365 Data Protection & Back-Up
    • Backup
    • Disaster Recovery
    • Security
    • Data, AI & Machine Learning
    • Testimonials
  • think Datacentre
    • S3 Service Overview
    • Storage & Archive
    • HCI
    • Server Virtualisation
    • Desktop and Application Virtualisation
    • Backup & Disaster Recovery
  • think Network & Security
    • S3 Service Overview
    • GDPR
    • Cloud Security
    • Office 365 Data Protection & Back-Up
    • Ransomware Protection
  • think Managed Support Services
    • S3 MSS
    • University of Cambridge MSS
    • Bristol Schools MSS
  • think S3
    • About S3
    • Our Vision
    • Our Offering
    • Customers & Case Studies
    • Testimonials
    • Latest News
    • Careers
    • Partners
    • Contact us
MENU CLOSE back  

3 Tips For Mitigating Data Protection Risk Following GDPR

You are here:
  1. Home
  2. blogs3, Network Security, News
  3. 3 Tips For Mitigating Data Protection Risk Following GDPR
Share... Share on LinkedInTweet about this on TwitterShare on Google+Email this to someonePrint this page
12th April 2016 brought to a close the 4 years of debate and rewrite over the long awaited General Data Protection Regulation (GDPR), the process is not complete as members of the EU will now have 2 years to pass these regulations into law. Although it is worth noting that due to the UK’s special status in the EU, the provisions will only apply to some extent.

“The new rules will ensure that the fundamental right to personal data protection is guaranteed for all. The GDPR will help stimulate the Digital Single Market in the EU by fostering trust in online services by consumers and legal certainty for businesses based on clear and uniform rules.” – A statement from the European Commission

Among the new regulations are elements such as the right to be forgotten for individuals. Many elements of GDPR will help protect consumers from unwanted communications and approaches from organisations.

A couple of other changes to be aware of:

Consent age for data collection raised from 13 to 16

Data must be deleted if it is no longer held for a purpose

What does GDPR mean to the business world and IT teams? Why should you care?

GDPR is good for business and IT teams as it brings standardisation to what was a messy and out of date group of policies and organisations. Bear in mind there are 28 member states, who up until now all had their own ideas on what data protection looked like and how it was handled. Making data handling & storage a colossal headache for many European organisations, who frequently cross borders with their business and data. The benefits of these changes will be felt amongst data protection offers across the globe no doubt.

Much is being made about the individual’s rights regarding how a company holds and uses data. Every company will collect masses of data on clients and individuals from employees to customers.  Under GDPR you will be held more accountable than ever before, should your company suffer a breach in network security and data is leached, no longer can you try and keep quiet about it. Under the new regulations a company must notify the EU government of the breach with 72 hours of discovery.

Following the notification and resolution to the breach will be the inevitable investigation by the central European authority responsible for policing these new regulations. This is where things for IT really start to come into play. Most companies now are targeted at some level by cyber crime, some companies are specifically targeted for their IP and held to ransom, others are hit because of the rich and high value data held within their data center.  In a recent blog, I spoke about the need for robust network and endpoint security combined with encryption to protect your company from the threat of these types of breaches. Now with GDPR signed off the truth is that 4% of total worldwide turnover could be the fine faced by your business, or 20 million Euros.

More than ever it is vital that your IT organisation takes a good hard look at data protection and handling policies and how you can best mitigate the fall out following a breach.

General Data Protection Regulation Infographic
As promised in the title to this article here are 3 TIPS TO MITIGATE RISK

 

  1. Update All Data Protection Policies

This is part of GDPR, so for starters this will just help you get compliant as well as being a great exercise and opportunity to stress to the board the value in investing in data protection solutions, such as data encryption and archiving to data silo with an air gap.

 

  1. Test your vulnerabilities

You may have some tools in-house for testing your endpoint and network security. These tools are do their job, but they are nothing compared to the specialist organisations that exist to deliver the next generation level of penetration testing. When it comes to mitigating the risk of a hefty fine, being seen to have taken every precaution will score big brownie points.

 

  1. Look at your 3rd party suppliers

Are you backing up into an offsite location, or archiving to a cloud provider? If so what do you know about their business and how they keep your data secure, are they using encryption. It is your business that is responsible for the data it handles, ultimately you want to know that your outsource is going to do everything you need to protect your business too. Cloud providers such as Microsoft Azure invest heavily in data protection specialists, in all aspects. Being ISO 27018 Approved shows the dedication that you need to protect your cloud data.

These 3 tips are a good place to start in identifying where you may need to tighten up your data protection, making sure your board completely understand the importance of compliance to GDPR is now vital. Working with our partners and clients we have helped create and deliver secure hybrid and cloud infrastructures that also enable a business to take full advantage of all the different compute and mobility methods available to the modern enterprise.

Related posts

CITL Gold Partner Status
Exclusive Breakfast Briefing For Charity IT Leaders – Securing A Modern Charity
November 11, 2019
Charity Tech Logo 2019
think S3 To Return To Civil Society Charity Technology Conference – 6th November
October 30, 2019
Citrix_Logo_Black
think S3 and Citrix – See The Future Of The Charity Workplace On November 27th
October 18, 2019

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <s> <strike> <strong>

Time limit is exhausted. Please reload CAPTCHA.

clearPost Comment

  • think Cloud
  • think Datacentre
  • think Network & Security
  • think Managed Support Services
Get in Touch

Name *

E-mail *

Telephone *

Company *

Message

Submit clear

Latest News & Events
  • CITL Gold Partner Status
    Exclusive Breakfast Briefing For Charity IT Leaders – Securing A Modern Charity
    November 11, 2019
  • Charity Tech Logo 2019
    think S3 To Return To Civil Society Charity Technology Conference – 6th November
    October 30, 2019
  • Citrix_Logo_Black
    think S3 and Citrix – See The Future Of The Charity Workplace On November 27th
    October 18, 2019
Latest Tweets
  • RT @CharityITLeader: #joinus #charityitleaders #networking #membership https://t.co/TCzCS5fLVu275 days ago
  • RT @clouddirect: Discover what Microsoft Secure Score is and how you can start reaping all of it's benefits: https://t.co/6N3Tf1xIbU #Micr…285 days ago
  • RT @CharityITLeader: Working from home doesn't mean working alone. Our Chair, @OxheyDad, will be hosting a virtual coffee break at 11.30am…302 days ago
Our Services
  • think Cloud
  • think Datacentre
  • think Network & Security
  • think Managed Support Services
Contact S3
  • Address
    Suite 139 Interchange House, Howard Way, Newport Pagnell, MK16 9PY
  • Telephone
    0845 686 0530
  • Email
    info@thinks3.co.uk

Find us on:

TwitterGoogle+Linkedin
think S3 | Cloud Solutions & Managed Services | Microsoft Gold Partner
Copyright © 2020 S3 Consulting Ltd. - Website by The Fresh Lab Ltd
 Careers | Privacy Policy & Cookies