Skip to Main Content
Online exclusive! Receive a free e-book when you purchase a training course or toolkit online before 30 September!
GDPR Gap Analysis

GDPR Gap Analysis

SKU: 4836
Format: Consultancy
Published: 11 Apr 2017

The GDPR gap analysis service provides an assessment of your organisation’s current level of compliance with the Regulation, and helps identify and prioritise the key work areas that your organisation must address ahead of May 2018.

Eligibility: The service package is available to single-entity organisations with between 21 and 500 staff.

Less than 21 staff? Discover our small business GDPR gap analysis service >>

Price: 3.900,00 €
Excluding VAT

Understand your GDPR compliance requirements

Our data protection consultants will assess your organisation’s privacy management and data protection practices through an on-site review of the following areas:

  1. Data protection governance – the extent to which data protection accountability, responsibility, policies and procedures, performance measurement controls, and reporting mechanisms to monitor compliance are in place and operating throughout your organisation.
  2. Risk management – your organisation’s arrangements for privacy risk management, the extent to which information-specific risks are incorporated into corporate risk management, and the extent to which risks to the rights and freedoms of data subjects are addressed.
  3. GDPR project resourcing – the extent to which your organisation has implemented an appropriately staffed, funded and supported GDPR compliance programme.
  4. DPO (data protection officer) – whether your organisation is required to appoint a DPO, whether one has been appointed and, if so, whether they meet the Regulation’s requirements.
  5. Roles and responsibilities – the extent to which your organisation has defined and established appropriate roles and responsibilities, and delivered appropriate training and awareness.
  6. Scope of compliance – whether your organisation has clearly defined the scope of its GDPR compliance, taking account of all data processing in which it has a part, whether as data controller or processor, as well as any data sharing.
  7. Personal data processes – the extent to which each of the GDPR’s data processing principles are established for each process that involves personal data, whether a lawful basis for processing has been identified and documented for each, and whether a DPIA (data protection impact assessment) is mandatory under the Regulation.
  8. PIMS (personal information management system) – whether your organisation has implemented a PIMS that documents its GDPR compliance, and addresses staff training and awareness.
  9. ISMS (information security management system) – whether your organisation has implemented an ISMS to meet the GDPR’s requirements for “appropriate technical and organisational measures” in order to ensure the security of the personal data it processes.
  10. Rights of data subjects – the processes your organisation has implemented to facilitate and respond to data subjects exercising their rights under the GDPR.
  • The price quoted applies to single-entity organisations with 21 to 500 staff and with all key personnel (senior management, HR managers, compliance, IT, sales, marketing and procurement) based at a single site.
  • If your business is located outside mainland UK (England, Scotland and Wales), additional expenses will be charged to accommodate our consultant’s travel for the on-site assessment.
  • See requirements for payment of purchases online by purchase order >>

Download the service description for more information >>

Why IT Governance?

Why choose us?

  • We have an in-depth understanding of the GDPR's requirements and how they should be met.
  • We provide a complete compliance support service to help organisations comply with the GDPR, including:
    • Data flow audit
    • Gap analysis
    • DPIAs (data protection impact assessments)
  • Our specialist team has extensive data protection and information security management project expertise, both in the UK and overseas.
  • Our transparent proposals are fixed price, so you won’t get any unexpected surprises. 

Customer Reviews

(0# of Ratings:)
This website uses cookies. View our cookie policy.