gdpr capability pack

8
Introducing FourthLine’s General Data Protection Regulation (GDPR) Resourcing Services

Upload: ellen-stringer

Post on 15-Feb-2017

47 views

Category:

Documents


0 download

TRANSCRIPT

Introducing

FourthLine’s General Data Protection Regulation (GDPR) Resourcing Services

What recruitment services do we provide?• Interim Management and Contractor Solutions• Project Outsourcing (Consultancy Firms)• Permanent Contingent• Permanent Retained Search

We recruit for the following industries• Financial Services• Consulting & Practice• Commerce & industry • Public Sector• Utilities & Energy• Retail• Pharmaceuticals

Our specialist recruitment practices• Security & Privacy• Regulatory Compliance & Consulting• Business Resilience• Risk Change

ABOUT FOURTHLINE

Who are we?FourthLine is an interim and permanent recruitment consultancy specialising in UK regulated sectors. We build high performing Risk, Compliance and Regulatory Change teams for industry and consulting firms. FourthLine's effective resourcing solutions bridge the gap between an organisations Risk and Regulatory agenda and the related skill shortages.

EU GDPRKey changes proposed by the regulation

Regulatory and legal compliance

Safeguarding data against attacks and threats

Increasing consumer trust

Marketplace reputation and brand

Ethical decision-making concerning use of data

Ensuring business partner compliance

Maintaining or enhancing the value of information

Increase employee trust

67%44%

32%

28%

18%

17%

10%

9%

10% 80%70%60%50%30% 40%20%

PRIVACY PROGRAMME PRIORITIES

Source: The IAPP-EY Annual Privacy Governance Report 2015

The new EU General Data Protection Regulation will have a significant impact on businesses across all industries.

Key changes include:• Fines of up to 4% of annual worldwide turnover• Expanded scope of applicable data controller and processors• Introduction of Data Protection Officers (DPO’s)• Demand for firm accountability• Privacy Impact Assessments• Consumer consent • Mandatory breach notification• New rights for individuals • Privacy by Design• Processor obligations

In order to cope with the potential increase in costs and regulatory burden, organisations need to review their current data protection compliance programmes, to ensure they are ready to comply with GDPR before it comes into force between early 2018 to May 2018.

What stage are firms at with GDPR?

X18% have began training and awareness programmes across the business.

14% have a data classification policy in place.

8% have implemented a data classification tool.

13% have done nothing, placing themselves at risk of non-compliance and security threats.

Statistics taken from a survey conducted by boldonjames

PREPARATION

The six steps to GDPR compliance

Technical Advice

• FourthLine can assist firms at the beginning for their GDPR journey.

• We offer Technical Advisor meetings with trusted interims who can advise you on multiple aspects of GDPR regulation and delivery.

• Our partnership with a leading data privacy law firm can also offer your in house legal team free guidance on your legal requirements under GDPR.

• Both services are a value add to our customers and are free of charge.

Regulatory Interpretation

• How your firm is going to be impacted by GDPR is still up for great debate.

• The only thing for certain is that it will apply for all firms trading across the EU and how you interpret and apply the regulation to your company is going to be central to successful compliance.

• FourthLine’s network of interim Data Privacy Legal Counsels and experienced Heads of Data Privacy will guide your firm through the maze of

regulation.

Gap Analysis

• Each firm will need to carry out PIAs and a deep dive into the data they hold, their current risk exposure and compliance against GDPR.

• This needs to be carried out in all departments from Marketing to IT and is the starting block to prepare the pathway to GDPR implementation.

• FourthLine can provide Data Analysis, Data Governance, Data Classification and Business Analysis interims to help you assess your current state.

Roadmap for Compliance and Delivery

• The GDPR programme is wide ranging, encompassing diverse business areas such as legal, marketing, technology, sales and compliance.• Expert management and delivery of this complex challenge is essential to ensuring you meet the May 2018 deadline.

• FourthLine works with the top 20% of interim programme, project and data professionals to help you deliver key regulatory and organisational change programmes.

Technology

• With only around 1 in 10 firms currently using a Data Classification or Data Inventory tool there is likely to be much requirement around Technology change to track your data and flag and report data breaches.

• There will also be greater scrutiny on how you manage data and the resilience of networks against cyber- attacks.

• FourthLine has a strong network of technical professionals ranging from Business Analysts, Technical Architects and Technology Change interims to help you with system change and implementation.

Business As Usual

• Embedding GDPR and Privacy by Design will be essential in the ongoing challenge to remain

compliant. • Training, documentation, reporting and the

obligations of your compliance function and Data Privacy team will all need consideration.

• FourthLine’s permanent recruitment team can identify the BAU professionals to help you embed and comply with GDPR long term. We have a long history of understanding the key behaviours that make your team a long term success.

WE CAN HELP

SERVICES Our knowledge, experience and focus on the field of Regulatory Change, Risk and Compliance means we deliver a valuable hiring service to the UK regulated Financial Services industry.

Every client we work with comes to us seeking something specific which we offer through our outcome focused services and solutions.

FourthLine Solution

Interim Management and Contractor Solutions

Project Outsourcing

Permanent Contingent

Permanent Retained Search

The immediate injection of management or technical expertise to deliver a high priority project. An excellent way to bring long lasting customer value through both project delivery and knowledge transfer into your permanent staff.

We are embedded as part of your talent delivery team to help your customers with significant regulatory programmes. A highly flexible solution for Consulting firms which can be tailored according to the situation.

Our standard, highly responsive recruitment service, suitable for a vast array of hires. This solution is most successful when working in full partnership with all relevant stakeholders with a full process mapped out in advance.

Detailed research and approach methodology to hiring senior, highly technical or in-demand positions where you need your recruitment partner 100% focused on working for your business. Also works extremely well for new growth practices where you require the recruiter to work with even greater discretion.

OUR CLIENTS

www.thefourthline.co.uk

MAKING [email protected]

0161 4571145

About FourthLine

FourthLine is an interim and permanent recruitment consultancy specialising in UK regulated sectors. We build high performing Audit, Risk, Compliance and Regulatory

Change teams for industry and consulting firms. FourthLine's effective resourcing solutions bridge the gap between an organisations Risk and Regulatory agenda and

the related skill shortages.