Tackling data security risks under the GDPR

By Lancashire Business View

09 May 2018

andrew-stellakis-q2q-1000x500.jpg
By Andrew Stellakis, managing director, Q2Q IT

It’s been a dot on the horizon for months, but now the 25 May is looming and the GDPR is well and truly in sight, data security has never been so important for SMEs.

The level of scrutiny surrounding cyber security in the media means that a data breach could cause significant reputational damage – a mere glance at the headlines reveals companies being named and shamed for failing to protect sensitive information relating to customers or employees.

And under the GDPR, the consequences for such an error will be even more severe. When it comes to financial penalties, for instance, a data breach could result in fines as high as £17m or 4 per cent of global turnover – whichever is more.

Of course, for smaller businesses with limited time, budgets and human resources, implementing Fort Knox levels of defence isn’t as achievable as for larger corporations. But when it comes to mitigating risks and ensuring that personal data is effectively protected, there are a number of measures that SMEs can take.

Firstly, it’s crucial for companies to understand what sensitive information they hold, the risks out there and the rules governing data processing under the GDPR. It’s only by identifying existing gaps in defences that these can be filled.

Increasing awareness of these issues amongst all employees is essential – an SME’s workforce can either be its most effective shield or biggest vulnerability in the data security battle, so team training is vital.

The security principle of the legislation rules that “appropriate technical and organisational measures” must be taken to protect data.

So, when it comes to guarding against external threats, companies should ensure that robust processes such as file encryption and two-factor authentication are implemented, all software and hardware is regularly updated and cyber-security defences are installed – including firewalls and anti-malware.

SMEs with a Bring Your Own Device (BYOD) approach should be especially vigilant, and introduce a policy to ensure that any laptop, tablet or smartphone used to access business data is adequately protected.

Permissions should also be limited, to ensure only those who need file access to fulfil their role are granted it. Similarly, it’s important for companies to actively minimise the volume of personal data that they store and process – the GDPR rules this must be “limited to what is necessary”, so irrelevant information should not be held for the sake of it.

In the event that a breach does occur, having an effective back-up and data recovery procedure in place is invaluable.

Duplicate versions should be stored off-site or via the cloud and adequately protected, so that data can be restored if the primary files are compromised. For added peace of mind, enlisting an experienced IT provider can also be a cost-effective solution for companies that don’t have the in-house capacity or expertise to tackle data security effectively.

Latest news

1

County council's scaleup support creates more than 100 jobs Scaleup Leaders Network Participants 2022

County council's scaleup support creates more than 100 jobs

26 Jul 2024

2

Group outlines multi-million-pound regeneration plans for Preston Preston 35 Launch

Group outlines multi-million-pound regeneration plans for Preston

26 Jul 2024

3

Behind the scenes of Root Fifty-Two's Pendleside Hospice refreshed brand Pendleside – 2 (1).jpg.jpg

Behind the scenes of Root Fifty-Two's Pendleside Hospice refreshed brand

26 Jul 2024

4

How to build mental strength How to build mental strength .png.png

How to build mental strength

26 Jul 2024

5

WCF Fuels North West takes on beach clean at Half Moon Bay WCF Fuels Beach Clean

WCF Fuels North West takes on beach clean at Half Moon Bay

26 Jul 2024

Bec Web Strip 980x120
Background image for hub sign up block

LBV Hub

Leverage Lancashire Business View platforms

Post your news
Post your events
Post your offers
Build your network
Improve your SEO
Gain coverage in the magazine
Sign-up
Events
Lancashire Built Environment Conference
BEC 315 X 315 Px
Networking
25 Sep 2024

Lancashire Built Environment Conference

Conference and Exhibition Centre, Winter Gardens Blackpool, FY1 1HL

08:30 - 13:00

RISE - The Academy for Female Leaders and Managers
WENDY BOWERS RISE Illustrstion copy.jpg.jpg
LBV Hub Seminars
11 Jun 2024 - 04 Dec 2024

RISE - The Academy for Female Leaders and Managers

East Lancashire Chamber of Commerce, Clayton le Moors, BB5 5JR

09:00 - 16:30

Preston Freelancer MeetUp and Coworking Day
Screenshot 2024-06-13 at 13.55.10.png.png
LBV Hub Networking
30 Jul 2024

Preston Freelancer MeetUp and Coworking Day

Society1 Coworking Space, Preston, PR1 3LT

10:00 - 12:00

Skills Bootcamp in Procurement - Cohort 1
Blue-Modern-Land-Travel-Youtube-Thumbnail-2-1024x576.png.png
LBV Hub Seminars
30 Jul 2024 - 08 Oct 2024

Skills Bootcamp in Procurement - Cohort 1

Community & Business Partners CIC, Blackburn, BB2 3UA

09:30 - 13:00

Chamber Breakfast Networking
Chamber Logo1.png.png
LBV Hub Networking
31 Jul 2024

Chamber Breakfast Networking

Pye Motors, Morecambe, LA3 3PF

08:00 - 10:00

Scaling your revenue: From zero to £1m in 60 months
CBP-logo LBV.png.png
LBV Hub Webinar
31 Jul 2024

Scaling your revenue: From zero to £1m in 60 months

Online, Online, Online

08:00 - 09:30

International Coworking Day Open Day
1.png.png
LBV Hub Social
09 Aug 2024 - 09 Aug 2024

International Coworking Day Open Day

Society1 Coworking Space, Prestin, PR1 3 LT

10:00 - 13:00

Knowledge & Networking: Basic Digital Marketing
Chamber Logo1.png.png
LBV Hub Seminars
12 Aug 2024

Knowledge & Networking: Basic Digital Marketing

Lancaster Golf Club, Lancaster, LA2 0AJ

14:00 - 13:00

Understanding Menopause
menopause.png.png
LBV Hub Webinar
15 Aug 2024

Understanding Menopause

x, Online, x

12:30 - 13:15

Sub36 Networking Event - The Bee Centre
Sub36 Socialbee Centre
Networking
15 Aug 2024

Sub36 Networking Event - The Bee Centre

The Bee Centre, Chorley, PR6 8LZ

15:00 - 17:00

Mini Networkers - Family Fun Morning
CBP-logo LBV.png.png
LBV Hub Networking
16 Aug 2024

Mini Networkers - Family Fun Morning

Community & Business Partners CIC, Blackburn, BB2 3UA

10:00 - 13:00

Morecambe Bay Walk 2024
bay1.jpg.jpg
LBV Hub Fundraisers
17 Aug 2024

Morecambe Bay Walk 2024

Sets off from Arnside, Carnforth, Cumbria Finishes at Grange Promenade, Kents Bank, Arnside, LA3 3LL

15:00 - 17:30

Advertise with us

Reaching 50,000 members, our print, digital and event platforms offer a fantastic way to raise your business profile and help you grow.

Find out more LBV116 Online Graphic
Subscribe now

Weekly news bulletin