Services for Organisations
We are experienced in working across all sectors, from sole trader start-ups to multi-national and international organisations, education, charity, financial, as well as a wide range of public sector services.
Wherever you are based, our mission is to assist you in adhering to data protection laws and implementing best practices to process personal data and sensitive information.
KPDP Consultancy is adept at advising clients in relation to the following:
- Data protection compliance needs of start-ups, small to medium businesses, larger corporate and international organisations
- Complex and varied data breach management, including risk assessing, reporting and responding
- Maintaining data subject request logs and data incident management records
- Compliance audits and gap analysis of processes and procedures
- Records of processing activities and accountability tracker management
- Lawful bases of processing, including further separate conditions for processing special category data
- Data protection impact assessments
- Legitimate interest assessments
- Transfer risk assessments (TRAs)
- International data transfer agreements (IDTAs)
- Complex data subject access requests and responses, including exemption application, supplementary information provision and redaction
- Freedom of Information Act and Environmental Information Regulations requests
Audit and Gap Analysis
We provide a full and detailed compliance audit, as well as a lighter touch gap analysis of your processes and procedures.
Whether you are a start-up business and want to get things right from the outset or know that your compliance needs a little work, we are here to help.
Data Subject Access Request (DSAR) Response Service
Whether you are facing a particularly complex request impacting upon other legal concerns, or are lacking the resources available to meet statutory deadlines, we can help.
Data Breach Management
We provide comprehensive support in the aftermath of a data breach. From assessing potential risks and advising on immediate mitigation steps to determining whether the incident meets the reporting threshold or requires notifying affected individuals, we’re here to help. We also draft necessary reports and ensure a thorough follow-up process.
We provide experienced and specialist resources to cover your short, medium and long term data protection and information governance needs. Typical examples include:
- Interim or emergency cover for maternity, paternity leave, long-term absence or gaps in recruitment
- Significant one-off projects requiring expertise and additional data protection resources
- Internal and branch data protection audits and spot checks
- Due diligence for mergers and acquisition activities
- Clearing backlogs of outstanding DPIAs, DSARs, FOIA requests and Environmental Information Regulations requests
