The Business Exchange Swindon & Wiltshire Edition 34: Dec/Jan 2017/18 | Page 26

FOCUS ON GDPR KEEPING YOUR BUSINESS COMPLIANT WITH THE NEW GENERAL DATA PROTECTION REGULATIONS By Paul O’Collins, Regional Manager, Enterprise Europe Network South West (EEN SW) Many large organisations will have already taken on board the implications of the new General Data Protection Regulation (GDPR) but the majority of SMEs are yet to learn about the new legislation and understand its full impact on their business. GDPR represents the biggest shake-up in data protection legislation for decades - bringing new responsibilities, roles and the potential for heavy fines for non-compliance or breach. This new legislation aims to create conformity across the EU and is automatically effective in EU member states and - irrespective of Brexit - we in the UK need to comply. Adopted back in April 2016, GDPR will replace the Data Protection Act (DPA) of 1998 and be effective from May 2018. If your business already complies with the Data Protection Act your approach to compliance should remain largely valid under the new GDPR regime and is certainly a good place to start from in terms of implementing any the changes required in response to the new regulations. Over the next few months the Information Commissioner’s Office (ICO) is planning to issue new guidance and tools to assist businesses in meeting the new requirements, however, it is generally considered good practice that you begin your compliance activity as early as possible and in particular, by reviewing the GDPR’s new transparency and individuals’ rights provisions. The ICO has produced a helpful twelve step approach to preparing for GDPR and here are some of the key headlines and topic areas from their documents that should be of interest to business: • Raising awareness of the regulations and effective risk management • Clear documentation and recording of the sources of information held • Addressing inaccuracies • Communicating and explaining privacy information • The enhanced rights of the individual • Response to Information Requests • Obtaining consent for use • Legal Basis for processing personal data • Children’s rights • Dealing with Data Breaches • Data Protection Impact Assessments (PIA) • Appointment of Data Protection Officers • International implications More information is available from the ICO visit: www.ico.org.uk Whatever your business it’s a good time to start making plans. @EENSW DE-MYSTIFYING GDPR WITH FIVE CRM FIVE CRM is a customer relationship management (CRM) system designed to offer an unprecedented level of flexibility in a single platform, catering for sales, service, marketing and much more. Headquartered in Chippenham, the firm is making its mark on a global stage with a second office in Clearwater, Florida, USA. Established since 1991, FIVE CRM has paved the way for many businesses helping them grow and succeed. With the introduction of GDPR (General Data Protection Regulation) in May 2018, FIVE CRM, saw an opportunity to further enhance their position as market leaders and have added bespoke functionality to their CRM system to ensure their clients are compliant. Their Personal Data Rights Management System, allows organisations to be ready for the changes in regulations, which includes: • Management of lawful reason information for every contact 26 THE BUSINESS EXCHANGE 2017 • Ability to store extensive details for consent reason by channel • Complete management of “Right to be Forgotten”, including backups • GDPR and ePrivacy compliant email campaign management • Can be used as the main CRM or stand alone Data Rights Management System Sales manager of the company, Jack Hodges said, “the idea behind our Personal Data Rights Management System was to ensure clear, simple, procedures were in place for our clients to take away the worry of the new GDPR regulations. There’s been a lot of talk about GDPR, but in my opinion, there is nothing practical or easy to follow. With our system, we de-mystify the plans that need to be in place, making data security and data management user- friendly, allowing sales and marketing professionals to relax and concentrate on their job.”