Data protection
The best organisations take great care to protect data, seeing it as an essential part of treating employees and customers fairly. To do this, they need to have a robust data protection system in place to ensure compliance with legislative obligations.
What we do
GoodCorporation has a Data Protection Framework that can be used to help organisations evaluate, revise or embed a strong data protection system and culture. Using this framework to review practices and procedures gives organisations the assurances they need around compliance with the latest regulation. It also promotes the implementation of best practice.
Our reports shows how this can be measured, what gaps can be identified and the remedial actions recommended.
Our work in this area has included the telecoms, IT services, charity, transportation and logistics sectors.
Data protection
framework
GoodCorporation’s Data Protection Framework can be used to verify existing systems and processes to provide board level assurances, or as a tool to identify any gaps and highlight areas that need to be strengthened. It covers the following areas:
- Management and governance
- Risk assessment
- Information securityÂ
- The legal environment
- Operational data practicesÂ
- Managing employee and stakeholder awareness
- Managing data access requests
- Monitoring and reviewing processes
The framework can be applied to the protection of both personal and commercial data and can be used to design, embed or evaluate an organisation’s data protection systems and culture.
Key steps to good data management
Demonstrating management commitment
Conducting thorough risk assessments
Maintaining a strong information security environment
Monitoring the legal environment
Managing employees who handle data
Controlling third party access to data
Handling requests from data subjects properly
Dealing with breaches swiftly and effectively