Tackling data security risks under the GDPR

By Lancashire Business View

09 May 2018

andrew-stellakis-q2q-1000x500.jpg
By Andrew Stellakis, managing director, Q2Q IT

It’s been a dot on the horizon for months, but now the 25 May is looming and the GDPR is well and truly in sight, data security has never been so important for SMEs.

The level of scrutiny surrounding cyber security in the media means that a data breach could cause significant reputational damage – a mere glance at the headlines reveals companies being named and shamed for failing to protect sensitive information relating to customers or employees.

And under the GDPR, the consequences for such an error will be even more severe. When it comes to financial penalties, for instance, a data breach could result in fines as high as £17m or 4 per cent of global turnover – whichever is more.

Of course, for smaller businesses with limited time, budgets and human resources, implementing Fort Knox levels of defence isn’t as achievable as for larger corporations. But when it comes to mitigating risks and ensuring that personal data is effectively protected, there are a number of measures that SMEs can take.

Firstly, it’s crucial for companies to understand what sensitive information they hold, the risks out there and the rules governing data processing under the GDPR. It’s only by identifying existing gaps in defences that these can be filled.

Increasing awareness of these issues amongst all employees is essential – an SME’s workforce can either be its most effective shield or biggest vulnerability in the data security battle, so team training is vital.

The security principle of the legislation rules that “appropriate technical and organisational measures” must be taken to protect data.

So, when it comes to guarding against external threats, companies should ensure that robust processes such as file encryption and two-factor authentication are implemented, all software and hardware is regularly updated and cyber-security defences are installed – including firewalls and anti-malware.

SMEs with a Bring Your Own Device (BYOD) approach should be especially vigilant, and introduce a policy to ensure that any laptop, tablet or smartphone used to access business data is adequately protected.

Permissions should also be limited, to ensure only those who need file access to fulfil their role are granted it. Similarly, it’s important for companies to actively minimise the volume of personal data that they store and process – the GDPR rules this must be “limited to what is necessary”, so irrelevant information should not be held for the sake of it.

In the event that a breach does occur, having an effective back-up and data recovery procedure in place is invaluable.

Duplicate versions should be stored off-site or via the cloud and adequately protected, so that data can be restored if the primary files are compromised. For added peace of mind, enlisting an experienced IT provider can also be a cost-effective solution for companies that don’t have the in-house capacity or expertise to tackle data security effectively.

Latest news

1

Burnley gets £4.8m heritage boost for town centre regeneration Burnley secures £4.8 million heritage boost for town centre regeneration

Burnley gets £4.8m heritage boost for town centre regeneration

25 Mar 2026

2

Celebrity chef launches training academy at Blackburn College Lisa Goodwin Allen at the academy at Blackburn College

Celebrity chef launches training academy at Blackburn College

24 Mar 2026

3

Manufacturers drive digital leadership as Made Smarter milestone passes 250 Charlotte Crossley Fylde Electronics and Joanne Daley from Manchester Met

Manufacturers drive digital leadership as Made Smarter milestone passes 250

24 Mar 2026

4

Lumo opens new Preston rail base in style ahead of West Coast expansion Lumo in Preston

Lumo opens new Preston rail base in style ahead of West Coast expansion

23 Mar 2026

5

Bowker marketing team wins National BMW and Porsche Awards Amy Lancaster-Hall, Marketing Manager; Freya Hesketh, Marketing & Social Media Executive; Chloe Robinson, Graphic Designer and Ellie Shaw, Social Media Expert

Bowker marketing team wins National BMW and Porsche Awards

20 Mar 2026

Background image for hub sign up block

LBV Hub

Leverage Lancashire Business View platforms

Post your news
Post your events
Post your offers
Build your network
Improve your SEO
Gain coverage in the magazine
Sign-up
Events
AI & Cybersecurity Summit
AI and Cybersecurity Logo
Summit
28 Apr 2026

AI & Cybersecurity Summit

Dunkenhalgh House , Blackburn Road, Clayton Le Moors, BB5 5JP

08:30 - 11:00

Sub36 Networking - Outdoor Elements
Sub36 Outdoor Elements Logo1920x1008
Networking
29 Apr 2026

Sub36 Networking - Outdoor Elements

Outdoor Elements, Pump House Dean Wood, Trapp Lane, Burnley, BB12 7JD

09:00 - 11:00

LBV Magazine Networking Events - SAVE THE DATES
Jan/ Feb Networking Event - Talking
Networking
14 May 2026

LBV Magazine Networking Events - SAVE THE DATES

Lancashire

08:30 - 10:30

Invest in Pendle: A Live Celebration Event
Northlight photograph
LBV Hub
25 Mar 2026

Invest in Pendle: A Live Celebration Event

The Leisure Box, Northlight Mill, Glen Way, Nelson, BB9 5NH

12:00 - 14:00

The Marketing Meetup Lancashire
TMM Lancs - 27th Jan.jpg.jpg
LBV Hub Networking
25 Mar 2026 - 25 Mar 2026

The Marketing Meetup Lancashire

Six Connections, One Slater Terrace, Burnley, BB11 1BU

18:00 - 20:00

The Employment Rights Act 2025: What you need to know
Logo.jpg.jpg
LBV Hub Seminars
26 Mar 2026 - 26 Mar 2026

The Employment Rights Act 2025: What you need to know

Lancaster & Morecambe College, Lancaster, LA1 1TZ

08:00 - 10:00

The Ultimate Music Quiz
Logo.jpg.jpg
LBV Hub Fundraisers
27 Mar 2026 - 27 Mar 2026

The Ultimate Music Quiz

Morecambe Football Club, Morecambe, LA4 4TB

19:00 - 22:30

Lancashire Business Expo 2026
SE, Lancashire 2025.png.png
LBV Hub Exhibitions
27 Mar 2026 - 27 Mar 2026

Lancashire Business Expo 2026

Sir Tom Finney Sports Centre, Preston, PR1 2HE

09:00 - 15:00

90 Day Business Planning Workshop
LBV Hub Networking
27 Mar 2026 - 27 Mar 2026

90 Day Business Planning Workshop

The Holiday Inn, Bolton, BL1 2EW

09:00 - 16:30

RISE - a tailored 6 month leadership programme for women across the North West
WENDY BOWERS RISE Illustrstion copy.jpg.jpg
LBV Hub Seminars
15 Apr 2026 - 15 Apr 2026

RISE - a tailored 6 month leadership programme for women across the North West

East Lancashire Chamber of Commerce, Clayton le Moors, BB5 5JR

09:00 - 15:30

The Business Network Central and East Lancashire
LBV Header (31).png.png
LBV Hub Networking
16 Apr 2026 - 16 Apr 2026

The Business Network Central and East Lancashire

Mytton Fold, Blackburn, BB6 8AB

11:30 - 14:15

Sickness Absence: key actions for your business
Logo.jpg.jpg
LBV Hub Seminars
22 Apr 2026 - 22 Feb 2026

Sickness Absence: key actions for your business

The Longlands Hotel, Carnforth, LA6 1JH

08:00 - 10:00

Advertise with us

Reaching 50,000 members, our print, digital and event platforms offer a fantastic way to raise your business profile and help you grow.

Find out more LBV124 Online Graphic
Subscribe now

Weekly news bulletin