SlideShare a Scribd company logo
1 of 20
CYBERSECURITY AND
DATA PROTECTION
RFA – GLOBAL TECHNOLOGY
CONSULTANCY
30 Years
Founded in 1989
550+
Clients
200+Engineers
Latest certifications
24/7/365
Monitoring & Support
GLOBAL
OPERATIONS
EMEA HQ in London
WORLD CLASS
LEADERSHIP TEAM
RFA – FOCUS AREAS
Cloud Innovation Automation
RFA – SERVICES
IT Service
Management
Cloud Design &
Migration
Managed Private &
Public Cloud
Development &
Workflow Automation
Compliance
& RegTech
Application Design
& Hosting
3 LINES OF DEFENCE CONSULTING
Compliance Risk Management Governance
3 LINES OF DEFENCE CONSULTING
FINANCIAL
SERVICES
MULTINATIONAL
CORPORATES
PROFESSIONAL
SERVICES
SECTORS
Compliance
Financial crime
prevention
Governance /
Ethics
Legal /
Expert Witness
Operational risk
COO
Info Security
Investigations
SKILLS
DATA IS
ESSENTIAL
TO LIFE AND
BUSINESS
Environment
• Data is one of your most valuable assets
• Clients and staff expect fast systems and
responses
• Millennials and children
DATA DRIVEN WORLD
Dangers
• Clients are less loyal
• No one is safe; large, small, mid sized
businesses
WHAT IS DATA PROTECTION
IN A DATA DRIVEN WORLD?
Soft copy
Hard copy Humans
Hardware
• Protecting the information
• Ensuring the information is used
correctly
• Security when adding, storing, deleting
or removing data
• Protecting the firm, clients and third
parties
WHY DOES
DATA
PROTECTION
MATTER?
• Correct thing to do!
• Potential target
• Reputational risk / client retention
• Client expectations
• Proportionate risk based approach
• Legal / regulatory requirements
WHEN IT
GOES
WRONG?
• Australian Government – Filing Cabinets
• Target – Outsourcer risk (70m customers)
• Uber – Ransom (57m clients/drivers)
• Morrisons – Published payroll data
• Equifax
• SEC
• Laptops are always going missing
REGULATORY REQUIREMENTS
GENERAL
DATA
PROTECTION
REGULATION
GDPR: THE FACTS
• Who is affected?
• Personal Data
• Data Controllers and Data Processors
• Consent
APPROACHING GDPR
RISK
MANAGEMEN
T
TECHNOLOGY
RISK
THIRD PARTY
RISK
FRAUD &
MISCONDUCT
RISK
CYBER RISK
CRISIS
MANAGEMENT
RISK
COMPLIANCE
RISK
PRIVACY BY
DESIGN
An approach to projects
that promotes privacy
and data protection
compliance from the
start.
WHAT DOES THIS MEAN?
GAINING CONSENT POST GDPR
Read our privacy statement
Why we collect this information
When you contact us, we collect this information to ensure we can respond
appropriately, specifically we collect:
Name: So we know how to address you. Your details will also be transferred to
our customer relationship system and your name will form part of your unique
identifier.
Why we collect this information
Phone: So we have a method of contacting you. This will also be transferred to
our customer relationship system.Why we collect this information
Subject: This will help categorise the contacts we have. It may also help us to
understand common questions we receive, which can be answered in our FAQ
section. Why we collect this information
Description: This will also be transferred to our customer relationship system so
if you contact us again, we have a history of our communications with you.
Why we collect this information
Email: So that we can contact you in an alternative way. This
will also be transferred to our customer relationship system.Why we collect this information
Company Name: So that we know which company you work
for and can associate you with other contacts from the same
company, and tailor the information that we send you.Privacy Statement
None of the information provided through this form will be
used for other reasons than to answer your query. It will not
be shared with any third party. This information will be deleted
1 year after our last contact with you. If you do not want us to
store your data please select the Send No data retained
button. Otherwise you are consenting to the above.
Send
No data
retained
SendCancel
PRINCIPLES OF DATA PROCESSING
Processed lawfully, fairly and in a transparent manner
Adequate, relevant and limited to what is necessary
Accurate and where necessary, kept up to date
Retained only for as long as necessary
Collected for specified, explicit and legitimate purposes
Processed in an appropriate manner to maintain security
5 STEP ACTION PLAN
• Data Analysis
• Technology Infrastructure Review
• Policy Review
• Supply Chain Review
• Building an Implementation Team
KEY TAKEAWAYS
Data
What data do you have and where is it stored?
What do you use it for?
Have you classified it as public, sensitive, confidential?
How long can you keep the data for?
Infrastructure
Where is your data held?
Do you use any cloud or outsourced technology
service providers?
Are your systems and networks secure?
Processes
Do you have Senior Management Systems and
Controls SYSC, DR and Business Continuity
plans in place, or a Cyber Incident Response
Plan?
Do you include cybersecurity training in your staff
onboarding process?
People
Who do you share data with?
Do you have a team in place to steer GDPR
implementation?
Do you have the right skills in house to ensure
your data is protected and compliant?
Final Comment
The cost and effort associated with building resilience and a
solid data protection strategy can be high
However, the cost of failure is far worse
WHO CAN I CALL FOR HELP?
Simon Elvidge,
Managing Director
3 Lines of Defence Consulting
Tel: 020 7129 1270
Email: simon.elvidge@3ldc.com
George Ralph,
Managing Director
RFA (UK) Ltd
Tel: 0207 093 5000
Email gralph@rfa.com

More Related Content

What's hot

2014 dpa training february nn
2014 dpa training february nn2014 dpa training february nn
2014 dpa training february nnLawrence Serewicz
 
Will you be ready to comply with new EU Data Protection Regulation in time?
Will you be ready to comply with new EU Data Protection Regulation in time?Will you be ready to comply with new EU Data Protection Regulation in time?
Will you be ready to comply with new EU Data Protection Regulation in time?Per Norhammar
 
Protection You Need from the Partner You Trust
Protection You Need from the Partner You TrustProtection You Need from the Partner You Trust
Protection You Need from the Partner You TrustADP, LLC
 
LHP Technology Service
LHP Technology ServiceLHP Technology Service
LHP Technology ServiceHeather Crews
 
HIPAA Compliant Cloud Computing, An Overview
HIPAA Compliant Cloud Computing, An OverviewHIPAA Compliant Cloud Computing, An Overview
HIPAA Compliant Cloud Computing, An OverviewClearDATACloud
 
Why do you need an it policy it-toolkits
Why do you need an it policy     it-toolkitsWhy do you need an it policy     it-toolkits
Why do you need an it policy it-toolkitsIT-Toolkits.org
 

What's hot (7)

2014 dpa training february nn
2014 dpa training february nn2014 dpa training february nn
2014 dpa training february nn
 
Will you be ready to comply with new EU Data Protection Regulation in time?
Will you be ready to comply with new EU Data Protection Regulation in time?Will you be ready to comply with new EU Data Protection Regulation in time?
Will you be ready to comply with new EU Data Protection Regulation in time?
 
Protection You Need from the Partner You Trust
Protection You Need from the Partner You TrustProtection You Need from the Partner You Trust
Protection You Need from the Partner You Trust
 
LHP Technology Service
LHP Technology ServiceLHP Technology Service
LHP Technology Service
 
McAfee
McAfeeMcAfee
McAfee
 
HIPAA Compliant Cloud Computing, An Overview
HIPAA Compliant Cloud Computing, An OverviewHIPAA Compliant Cloud Computing, An Overview
HIPAA Compliant Cloud Computing, An Overview
 
Why do you need an it policy it-toolkits
Why do you need an it policy     it-toolkitsWhy do you need an it policy     it-toolkits
Why do you need an it policy it-toolkits
 

Similar to Cybersecurity and Data Protection Executive Briefing

Cloud Storage and Security: Solving Compliance Challenges
Cloud Storage and Security: Solving Compliance ChallengesCloud Storage and Security: Solving Compliance Challenges
Cloud Storage and Security: Solving Compliance ChallengesEric Vanderburg
 
GDPR - Why it matters and how to make it Easy
GDPR - Why it matters and how to make it EasyGDPR - Why it matters and how to make it Easy
GDPR - Why it matters and how to make it EasyPaul McQuillan
 
SPSUK - When do you decide to go to the cloud?
SPSUK - When do you decide to go to the cloud?SPSUK - When do you decide to go to the cloud?
SPSUK - When do you decide to go to the cloud?Mark Stokes
 
From Asset to Impact - Presentation to ICS Data Protection Conference 2011
From Asset to Impact - Presentation to ICS Data Protection Conference 2011From Asset to Impact - Presentation to ICS Data Protection Conference 2011
From Asset to Impact - Presentation to ICS Data Protection Conference 2011Castlebridge Associates
 
How to Strengthen Enterprise Data Governance with Data Quality
How to Strengthen Enterprise Data Governance with Data QualityHow to Strengthen Enterprise Data Governance with Data Quality
How to Strengthen Enterprise Data Governance with Data QualityPrecisely
 
How to Strengthen Enterprise Data Governance with Data Quality
How to Strengthen Enterprise Data Governance with Data QualityHow to Strengthen Enterprise Data Governance with Data Quality
How to Strengthen Enterprise Data Governance with Data QualityDATAVERSITY
 
Compliance is a Team Project
Compliance is a Team ProjectCompliance is a Team Project
Compliance is a Team ProjectThe TNS Group
 
Security 101 for No- techies
Security 101 for No- techiesSecurity 101 for No- techies
Security 101 for No- techiesBrenton Johnson
 
Integra Customer Support
Integra Customer SupportIntegra Customer Support
Integra Customer Supportharrysmith
 
Deep dive into Microsoft Purview Data Loss Prevention
Deep dive into Microsoft Purview Data Loss PreventionDeep dive into Microsoft Purview Data Loss Prevention
Deep dive into Microsoft Purview Data Loss PreventionDrew Madelung
 
Strata NYC 2015 - Transamerica and INFA v1
Strata NYC 2015 - Transamerica and INFA v1Strata NYC 2015 - Transamerica and INFA v1
Strata NYC 2015 - Transamerica and INFA v1Vishal Bamba
 
Softchoice - Microsoft Office 365 - Discussing legal concerns and informatio...
Softchoice  - Microsoft Office 365 - Discussing legal concerns and informatio...Softchoice  - Microsoft Office 365 - Discussing legal concerns and informatio...
Softchoice - Microsoft Office 365 - Discussing legal concerns and informatio...Softchoice Corporation
 
GDPR: Leverage the Power of Graphs
GDPR: Leverage the Power of GraphsGDPR: Leverage the Power of Graphs
GDPR: Leverage the Power of GraphsNeo4j
 
3 Steps to Automate Compliance for Healthcare Organizations
3 Steps to Automate Compliance for Healthcare Organizations3 Steps to Automate Compliance for Healthcare Organizations
3 Steps to Automate Compliance for Healthcare OrganizationsAvePoint
 
Scaling Privacy in a Spark Ecosystem
Scaling Privacy in a Spark EcosystemScaling Privacy in a Spark Ecosystem
Scaling Privacy in a Spark EcosystemDatabricks
 
Empired Convergence 2017 - Keeping Pace, Staying Safe in the Digital World
Empired Convergence 2017 - Keeping Pace, Staying Safe in the Digital WorldEmpired Convergence 2017 - Keeping Pace, Staying Safe in the Digital World
Empired Convergence 2017 - Keeping Pace, Staying Safe in the Digital WorldEmpired
 
CRMCS GDPR - Why it matters and how to make it Easy
CRMCS   GDPR - Why it matters and how to make it EasyCRMCS   GDPR - Why it matters and how to make it Easy
CRMCS GDPR - Why it matters and how to make it EasyPaul McQuillan
 
CBC GDPR The Physics
CBC GDPR The PhysicsCBC GDPR The Physics
CBC GDPR The PhysicsJason Chapman
 

Similar to Cybersecurity and Data Protection Executive Briefing (20)

Cloud Storage and Security: Solving Compliance Challenges
Cloud Storage and Security: Solving Compliance ChallengesCloud Storage and Security: Solving Compliance Challenges
Cloud Storage and Security: Solving Compliance Challenges
 
GDPR - Why it matters and how to make it Easy
GDPR - Why it matters and how to make it EasyGDPR - Why it matters and how to make it Easy
GDPR - Why it matters and how to make it Easy
 
Data Security Explained
Data Security ExplainedData Security Explained
Data Security Explained
 
SPSUK - When do you decide to go to the cloud?
SPSUK - When do you decide to go to the cloud?SPSUK - When do you decide to go to the cloud?
SPSUK - When do you decide to go to the cloud?
 
From Asset to Impact - Presentation to ICS Data Protection Conference 2011
From Asset to Impact - Presentation to ICS Data Protection Conference 2011From Asset to Impact - Presentation to ICS Data Protection Conference 2011
From Asset to Impact - Presentation to ICS Data Protection Conference 2011
 
How to Strengthen Enterprise Data Governance with Data Quality
How to Strengthen Enterprise Data Governance with Data QualityHow to Strengthen Enterprise Data Governance with Data Quality
How to Strengthen Enterprise Data Governance with Data Quality
 
How to Strengthen Enterprise Data Governance with Data Quality
How to Strengthen Enterprise Data Governance with Data QualityHow to Strengthen Enterprise Data Governance with Data Quality
How to Strengthen Enterprise Data Governance with Data Quality
 
Compliance is a Team Project
Compliance is a Team ProjectCompliance is a Team Project
Compliance is a Team Project
 
Effective data protection for businesses with multiple locations
Effective data protection for businesses with multiple locationsEffective data protection for businesses with multiple locations
Effective data protection for businesses with multiple locations
 
Security 101 for No- techies
Security 101 for No- techiesSecurity 101 for No- techies
Security 101 for No- techies
 
Integra Customer Support
Integra Customer SupportIntegra Customer Support
Integra Customer Support
 
Deep dive into Microsoft Purview Data Loss Prevention
Deep dive into Microsoft Purview Data Loss PreventionDeep dive into Microsoft Purview Data Loss Prevention
Deep dive into Microsoft Purview Data Loss Prevention
 
Strata NYC 2015 - Transamerica and INFA v1
Strata NYC 2015 - Transamerica and INFA v1Strata NYC 2015 - Transamerica and INFA v1
Strata NYC 2015 - Transamerica and INFA v1
 
Softchoice - Microsoft Office 365 - Discussing legal concerns and informatio...
Softchoice  - Microsoft Office 365 - Discussing legal concerns and informatio...Softchoice  - Microsoft Office 365 - Discussing legal concerns and informatio...
Softchoice - Microsoft Office 365 - Discussing legal concerns and informatio...
 
GDPR: Leverage the Power of Graphs
GDPR: Leverage the Power of GraphsGDPR: Leverage the Power of Graphs
GDPR: Leverage the Power of Graphs
 
3 Steps to Automate Compliance for Healthcare Organizations
3 Steps to Automate Compliance for Healthcare Organizations3 Steps to Automate Compliance for Healthcare Organizations
3 Steps to Automate Compliance for Healthcare Organizations
 
Scaling Privacy in a Spark Ecosystem
Scaling Privacy in a Spark EcosystemScaling Privacy in a Spark Ecosystem
Scaling Privacy in a Spark Ecosystem
 
Empired Convergence 2017 - Keeping Pace, Staying Safe in the Digital World
Empired Convergence 2017 - Keeping Pace, Staying Safe in the Digital WorldEmpired Convergence 2017 - Keeping Pace, Staying Safe in the Digital World
Empired Convergence 2017 - Keeping Pace, Staying Safe in the Digital World
 
CRMCS GDPR - Why it matters and how to make it Easy
CRMCS   GDPR - Why it matters and how to make it EasyCRMCS   GDPR - Why it matters and how to make it Easy
CRMCS GDPR - Why it matters and how to make it Easy
 
CBC GDPR The Physics
CBC GDPR The PhysicsCBC GDPR The Physics
CBC GDPR The Physics
 

Recently uploaded

꧁❤ Greater Noida Call Girls Delhi ❤꧂ 9711199171 ☎️ Hard And Sexy Vip Call
꧁❤ Greater Noida Call Girls Delhi ❤꧂ 9711199171 ☎️ Hard And Sexy Vip Call꧁❤ Greater Noida Call Girls Delhi ❤꧂ 9711199171 ☎️ Hard And Sexy Vip Call
꧁❤ Greater Noida Call Girls Delhi ❤꧂ 9711199171 ☎️ Hard And Sexy Vip Callshivangimorya083
 
20240419 - Measurecamp Amsterdam - SAM.pdf
20240419 - Measurecamp Amsterdam - SAM.pdf20240419 - Measurecamp Amsterdam - SAM.pdf
20240419 - Measurecamp Amsterdam - SAM.pdfHuman37
 
GA4 Without Cookies [Measure Camp AMS]
GA4 Without Cookies [Measure Camp AMS]GA4 Without Cookies [Measure Camp AMS]
GA4 Without Cookies [Measure Camp AMS]📊 Markus Baersch
 
Beautiful Sapna Vip Call Girls Hauz Khas 9711199012 Call /Whatsapps
Beautiful Sapna Vip  Call Girls Hauz Khas 9711199012 Call /WhatsappsBeautiful Sapna Vip  Call Girls Hauz Khas 9711199012 Call /Whatsapps
Beautiful Sapna Vip Call Girls Hauz Khas 9711199012 Call /Whatsappssapnasaifi408
 
From idea to production in a day – Leveraging Azure ML and Streamlit to build...
From idea to production in a day – Leveraging Azure ML and Streamlit to build...From idea to production in a day – Leveraging Azure ML and Streamlit to build...
From idea to production in a day – Leveraging Azure ML and Streamlit to build...Florian Roscheck
 
9711147426✨Call In girls Gurgaon Sector 31. SCO 25 escort service
9711147426✨Call In girls Gurgaon Sector 31. SCO 25 escort service9711147426✨Call In girls Gurgaon Sector 31. SCO 25 escort service
9711147426✨Call In girls Gurgaon Sector 31. SCO 25 escort servicejennyeacort
 
Predictive Analysis - Using Insight-informed Data to Determine Factors Drivin...
Predictive Analysis - Using Insight-informed Data to Determine Factors Drivin...Predictive Analysis - Using Insight-informed Data to Determine Factors Drivin...
Predictive Analysis - Using Insight-informed Data to Determine Factors Drivin...ThinkInnovation
 
Customer Service Analytics - Make Sense of All Your Data.pptx
Customer Service Analytics - Make Sense of All Your Data.pptxCustomer Service Analytics - Make Sense of All Your Data.pptx
Customer Service Analytics - Make Sense of All Your Data.pptxEmmanuel Dauda
 
PKS-TGC-1084-630 - Stage 1 Proposal.pptx
PKS-TGC-1084-630 - Stage 1 Proposal.pptxPKS-TGC-1084-630 - Stage 1 Proposal.pptx
PKS-TGC-1084-630 - Stage 1 Proposal.pptxPramod Kumar Srivastava
 
Call Us ➥97111√47426🤳Call Girls in Aerocity (Delhi NCR)
Call Us ➥97111√47426🤳Call Girls in Aerocity (Delhi NCR)Call Us ➥97111√47426🤳Call Girls in Aerocity (Delhi NCR)
Call Us ➥97111√47426🤳Call Girls in Aerocity (Delhi NCR)jennyeacort
 
INTERNSHIP ON PURBASHA COMPOSITE TEX LTD
INTERNSHIP ON PURBASHA COMPOSITE TEX LTDINTERNSHIP ON PURBASHA COMPOSITE TEX LTD
INTERNSHIP ON PURBASHA COMPOSITE TEX LTDRafezzaman
 
办理学位证纽约大学毕业证(NYU毕业证书)原版一比一
办理学位证纽约大学毕业证(NYU毕业证书)原版一比一办理学位证纽约大学毕业证(NYU毕业证书)原版一比一
办理学位证纽约大学毕业证(NYU毕业证书)原版一比一fhwihughh
 
Schema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdfSchema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdfLars Albertsson
 
VIP Call Girls Service Miyapur Hyderabad Call +91-8250192130
VIP Call Girls Service Miyapur Hyderabad Call +91-8250192130VIP Call Girls Service Miyapur Hyderabad Call +91-8250192130
VIP Call Girls Service Miyapur Hyderabad Call +91-8250192130Suhani Kapoor
 
RadioAdProWritingCinderellabyButleri.pdf
RadioAdProWritingCinderellabyButleri.pdfRadioAdProWritingCinderellabyButleri.pdf
RadioAdProWritingCinderellabyButleri.pdfgstagge
 
VIP High Class Call Girls Jamshedpur Anushka 8250192130 Independent Escort Se...
VIP High Class Call Girls Jamshedpur Anushka 8250192130 Independent Escort Se...VIP High Class Call Girls Jamshedpur Anushka 8250192130 Independent Escort Se...
VIP High Class Call Girls Jamshedpur Anushka 8250192130 Independent Escort Se...Suhani Kapoor
 

Recently uploaded (20)

꧁❤ Greater Noida Call Girls Delhi ❤꧂ 9711199171 ☎️ Hard And Sexy Vip Call
꧁❤ Greater Noida Call Girls Delhi ❤꧂ 9711199171 ☎️ Hard And Sexy Vip Call꧁❤ Greater Noida Call Girls Delhi ❤꧂ 9711199171 ☎️ Hard And Sexy Vip Call
꧁❤ Greater Noida Call Girls Delhi ❤꧂ 9711199171 ☎️ Hard And Sexy Vip Call
 
20240419 - Measurecamp Amsterdam - SAM.pdf
20240419 - Measurecamp Amsterdam - SAM.pdf20240419 - Measurecamp Amsterdam - SAM.pdf
20240419 - Measurecamp Amsterdam - SAM.pdf
 
GA4 Without Cookies [Measure Camp AMS]
GA4 Without Cookies [Measure Camp AMS]GA4 Without Cookies [Measure Camp AMS]
GA4 Without Cookies [Measure Camp AMS]
 
Beautiful Sapna Vip Call Girls Hauz Khas 9711199012 Call /Whatsapps
Beautiful Sapna Vip  Call Girls Hauz Khas 9711199012 Call /WhatsappsBeautiful Sapna Vip  Call Girls Hauz Khas 9711199012 Call /Whatsapps
Beautiful Sapna Vip Call Girls Hauz Khas 9711199012 Call /Whatsapps
 
Call Girls in Saket 99530🔝 56974 Escort Service
Call Girls in Saket 99530🔝 56974 Escort ServiceCall Girls in Saket 99530🔝 56974 Escort Service
Call Girls in Saket 99530🔝 56974 Escort Service
 
From idea to production in a day – Leveraging Azure ML and Streamlit to build...
From idea to production in a day – Leveraging Azure ML and Streamlit to build...From idea to production in a day – Leveraging Azure ML and Streamlit to build...
From idea to production in a day – Leveraging Azure ML and Streamlit to build...
 
9711147426✨Call In girls Gurgaon Sector 31. SCO 25 escort service
9711147426✨Call In girls Gurgaon Sector 31. SCO 25 escort service9711147426✨Call In girls Gurgaon Sector 31. SCO 25 escort service
9711147426✨Call In girls Gurgaon Sector 31. SCO 25 escort service
 
Predictive Analysis - Using Insight-informed Data to Determine Factors Drivin...
Predictive Analysis - Using Insight-informed Data to Determine Factors Drivin...Predictive Analysis - Using Insight-informed Data to Determine Factors Drivin...
Predictive Analysis - Using Insight-informed Data to Determine Factors Drivin...
 
Customer Service Analytics - Make Sense of All Your Data.pptx
Customer Service Analytics - Make Sense of All Your Data.pptxCustomer Service Analytics - Make Sense of All Your Data.pptx
Customer Service Analytics - Make Sense of All Your Data.pptx
 
PKS-TGC-1084-630 - Stage 1 Proposal.pptx
PKS-TGC-1084-630 - Stage 1 Proposal.pptxPKS-TGC-1084-630 - Stage 1 Proposal.pptx
PKS-TGC-1084-630 - Stage 1 Proposal.pptx
 
꧁❤ Aerocity Call Girls Service Aerocity Delhi ❤꧂ 9999965857 ☎️ Hard And Sexy ...
꧁❤ Aerocity Call Girls Service Aerocity Delhi ❤꧂ 9999965857 ☎️ Hard And Sexy ...꧁❤ Aerocity Call Girls Service Aerocity Delhi ❤꧂ 9999965857 ☎️ Hard And Sexy ...
꧁❤ Aerocity Call Girls Service Aerocity Delhi ❤꧂ 9999965857 ☎️ Hard And Sexy ...
 
Call Us ➥97111√47426🤳Call Girls in Aerocity (Delhi NCR)
Call Us ➥97111√47426🤳Call Girls in Aerocity (Delhi NCR)Call Us ➥97111√47426🤳Call Girls in Aerocity (Delhi NCR)
Call Us ➥97111√47426🤳Call Girls in Aerocity (Delhi NCR)
 
INTERNSHIP ON PURBASHA COMPOSITE TEX LTD
INTERNSHIP ON PURBASHA COMPOSITE TEX LTDINTERNSHIP ON PURBASHA COMPOSITE TEX LTD
INTERNSHIP ON PURBASHA COMPOSITE TEX LTD
 
办理学位证纽约大学毕业证(NYU毕业证书)原版一比一
办理学位证纽约大学毕业证(NYU毕业证书)原版一比一办理学位证纽约大学毕业证(NYU毕业证书)原版一比一
办理学位证纽约大学毕业证(NYU毕业证书)原版一比一
 
Schema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdfSchema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdf
 
VIP Call Girls Service Miyapur Hyderabad Call +91-8250192130
VIP Call Girls Service Miyapur Hyderabad Call +91-8250192130VIP Call Girls Service Miyapur Hyderabad Call +91-8250192130
VIP Call Girls Service Miyapur Hyderabad Call +91-8250192130
 
Deep Generative Learning for All - The Gen AI Hype (Spring 2024)
Deep Generative Learning for All - The Gen AI Hype (Spring 2024)Deep Generative Learning for All - The Gen AI Hype (Spring 2024)
Deep Generative Learning for All - The Gen AI Hype (Spring 2024)
 
RadioAdProWritingCinderellabyButleri.pdf
RadioAdProWritingCinderellabyButleri.pdfRadioAdProWritingCinderellabyButleri.pdf
RadioAdProWritingCinderellabyButleri.pdf
 
Decoding Loan Approval: Predictive Modeling in Action
Decoding Loan Approval: Predictive Modeling in ActionDecoding Loan Approval: Predictive Modeling in Action
Decoding Loan Approval: Predictive Modeling in Action
 
VIP High Class Call Girls Jamshedpur Anushka 8250192130 Independent Escort Se...
VIP High Class Call Girls Jamshedpur Anushka 8250192130 Independent Escort Se...VIP High Class Call Girls Jamshedpur Anushka 8250192130 Independent Escort Se...
VIP High Class Call Girls Jamshedpur Anushka 8250192130 Independent Escort Se...
 

Cybersecurity and Data Protection Executive Briefing

  • 2. RFA – GLOBAL TECHNOLOGY CONSULTANCY 30 Years Founded in 1989 550+ Clients 200+Engineers Latest certifications 24/7/365 Monitoring & Support GLOBAL OPERATIONS EMEA HQ in London WORLD CLASS LEADERSHIP TEAM
  • 3. RFA – FOCUS AREAS Cloud Innovation Automation
  • 4. RFA – SERVICES IT Service Management Cloud Design & Migration Managed Private & Public Cloud Development & Workflow Automation Compliance & RegTech Application Design & Hosting
  • 5. 3 LINES OF DEFENCE CONSULTING Compliance Risk Management Governance
  • 6. 3 LINES OF DEFENCE CONSULTING FINANCIAL SERVICES MULTINATIONAL CORPORATES PROFESSIONAL SERVICES SECTORS Compliance Financial crime prevention Governance / Ethics Legal / Expert Witness Operational risk COO Info Security Investigations SKILLS
  • 7. DATA IS ESSENTIAL TO LIFE AND BUSINESS Environment • Data is one of your most valuable assets • Clients and staff expect fast systems and responses • Millennials and children DATA DRIVEN WORLD Dangers • Clients are less loyal • No one is safe; large, small, mid sized businesses
  • 8. WHAT IS DATA PROTECTION IN A DATA DRIVEN WORLD? Soft copy Hard copy Humans Hardware • Protecting the information • Ensuring the information is used correctly • Security when adding, storing, deleting or removing data • Protecting the firm, clients and third parties
  • 9. WHY DOES DATA PROTECTION MATTER? • Correct thing to do! • Potential target • Reputational risk / client retention • Client expectations • Proportionate risk based approach • Legal / regulatory requirements
  • 10. WHEN IT GOES WRONG? • Australian Government – Filing Cabinets • Target – Outsourcer risk (70m customers) • Uber – Ransom (57m clients/drivers) • Morrisons – Published payroll data • Equifax • SEC • Laptops are always going missing
  • 12. GDPR: THE FACTS • Who is affected? • Personal Data • Data Controllers and Data Processors • Consent
  • 13. APPROACHING GDPR RISK MANAGEMEN T TECHNOLOGY RISK THIRD PARTY RISK FRAUD & MISCONDUCT RISK CYBER RISK CRISIS MANAGEMENT RISK COMPLIANCE RISK PRIVACY BY DESIGN An approach to projects that promotes privacy and data protection compliance from the start.
  • 14. WHAT DOES THIS MEAN?
  • 15. GAINING CONSENT POST GDPR Read our privacy statement Why we collect this information When you contact us, we collect this information to ensure we can respond appropriately, specifically we collect: Name: So we know how to address you. Your details will also be transferred to our customer relationship system and your name will form part of your unique identifier. Why we collect this information Phone: So we have a method of contacting you. This will also be transferred to our customer relationship system.Why we collect this information Subject: This will help categorise the contacts we have. It may also help us to understand common questions we receive, which can be answered in our FAQ section. Why we collect this information Description: This will also be transferred to our customer relationship system so if you contact us again, we have a history of our communications with you. Why we collect this information Email: So that we can contact you in an alternative way. This will also be transferred to our customer relationship system.Why we collect this information Company Name: So that we know which company you work for and can associate you with other contacts from the same company, and tailor the information that we send you.Privacy Statement None of the information provided through this form will be used for other reasons than to answer your query. It will not be shared with any third party. This information will be deleted 1 year after our last contact with you. If you do not want us to store your data please select the Send No data retained button. Otherwise you are consenting to the above. Send No data retained SendCancel
  • 16. PRINCIPLES OF DATA PROCESSING Processed lawfully, fairly and in a transparent manner Adequate, relevant and limited to what is necessary Accurate and where necessary, kept up to date Retained only for as long as necessary Collected for specified, explicit and legitimate purposes Processed in an appropriate manner to maintain security
  • 17. 5 STEP ACTION PLAN • Data Analysis • Technology Infrastructure Review • Policy Review • Supply Chain Review • Building an Implementation Team
  • 18. KEY TAKEAWAYS Data What data do you have and where is it stored? What do you use it for? Have you classified it as public, sensitive, confidential? How long can you keep the data for? Infrastructure Where is your data held? Do you use any cloud or outsourced technology service providers? Are your systems and networks secure? Processes Do you have Senior Management Systems and Controls SYSC, DR and Business Continuity plans in place, or a Cyber Incident Response Plan? Do you include cybersecurity training in your staff onboarding process? People Who do you share data with? Do you have a team in place to steer GDPR implementation? Do you have the right skills in house to ensure your data is protected and compliant?
  • 19. Final Comment The cost and effort associated with building resilience and a solid data protection strategy can be high However, the cost of failure is far worse
  • 20. WHO CAN I CALL FOR HELP? Simon Elvidge, Managing Director 3 Lines of Defence Consulting Tel: 020 7129 1270 Email: simon.elvidge@3ldc.com George Ralph, Managing Director RFA (UK) Ltd Tel: 0207 093 5000 Email gralph@rfa.com