The Business Exchange Swindon & Wiltshire Edition 34: Dec/Jan 2017/18 | Page 26
FOCUS ON GDPR
KEEPING YOUR BUSINESS COMPLIANT
WITH THE NEW GENERAL DATA
PROTECTION REGULATIONS
By Paul O’Collins, Regional Manager, Enterprise Europe Network
South West (EEN SW)
Many large organisations will have already taken on board
the implications of the new General Data Protection
Regulation (GDPR) but the majority of SMEs are yet to
learn about the new legislation and understand its full
impact on their business.
GDPR represents the biggest shake-up in data
protection legislation for decades - bringing new
responsibilities, roles and the potential for heavy fines for
non-compliance or breach.
This new legislation aims to create conformity across
the EU and is automatically effective in EU member states
and - irrespective of Brexit - we in the UK need to comply.
Adopted back in April 2016, GDPR will replace the
Data Protection Act (DPA) of 1998 and be effective from
May 2018.
If your business already complies with the Data
Protection Act your approach to compliance should
remain largely valid under the new GDPR regime and
is certainly a good place to start from in terms of
implementing any the changes required in response to the
new regulations.
Over the next few months the Information
Commissioner’s Office (ICO) is planning to issue new
guidance and tools to assist businesses in meeting the
new requirements, however, it is generally considered
good practice that you begin your compliance activity as
early as possible and in particular, by reviewing the GDPR’s
new transparency and individuals’ rights provisions.
The ICO has produced a helpful twelve step approach
to preparing for GDPR and here are some of the key
headlines and topic areas from their documents that
should be of interest to business:
• Raising awareness of the regulations and effective risk
management
• Clear documentation and recording of the sources of
information held
• Addressing inaccuracies
• Communicating and explaining privacy information
• The enhanced rights of the individual
• Response to Information Requests
• Obtaining consent for use
• Legal Basis for processing personal data
• Children’s rights
• Dealing with Data Breaches
• Data Protection Impact Assessments (PIA)
• Appointment of Data Protection Officers
• International implications
More information is available from the ICO visit:
www.ico.org.uk
Whatever your business it’s a good time to start making plans.
@EENSW
DE-MYSTIFYING GDPR WITH FIVE CRM
FIVE CRM is a customer relationship management (CRM) system designed to offer an
unprecedented level of flexibility in a single platform, catering for sales, service, marketing
and much more. Headquartered in Chippenham, the firm is making its mark on a global
stage with a second office in Clearwater, Florida, USA. Established since 1991, FIVE CRM
has paved the way for many businesses helping them grow and succeed.
With the introduction of GDPR (General Data Protection
Regulation) in May 2018, FIVE CRM, saw an opportunity to
further enhance their position as market leaders and have
added bespoke functionality to their CRM system to ensure
their clients are compliant. Their Personal Data Rights
Management System, allows organisations to be ready for
the changes in regulations, which includes:
• Management of lawful reason information for every
contact
26
THE BUSINESS EXCHANGE 2017
• Ability to store extensive details for consent reason by
channel
• Complete management of “Right to be Forgotten”,
including backups
• GDPR and ePrivacy compliant email campaign
management
• Can be used as the main CRM or stand alone Data
Rights Management System
Sales manager of the company, Jack Hodges said, “the
idea behind our Personal Data Rights Management System
was to ensure clear, simple, procedures were in place
for our clients to take away the worry of the new GDPR
regulations. There’s been a lot of talk about GDPR, but in
my opinion, there is nothing practical or easy to follow.
With our system, we de-mystify the plans that need to be
in place, making data security and data management user-
friendly, allowing sales and marketing professionals to relax
and concentrate on their job.”