{"id":2108,"date":"2017-06-16T14:34:25","date_gmt":"2017-06-16T13:34:25","guid":{"rendered":"https:\/\/www.docswizard.co.uk\/?p=2108"},"modified":"2018-03-19T09:59:48","modified_gmt":"2018-03-19T09:59:48","slug":"top-tips-gdpr-planning","status":"publish","type":"post","link":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/","title":{"rendered":"10.5 Top Tips for GDPR Planning"},"content":{"rendered":"

\"GDPRThe GDPR (General Data Protection Regulations) come into force in May 2018. They require a significantly different approach to the management of Data Protection management currently, so here are our top tips to prompt your thinking and GDPR planning.<\/p>\n

Do’s<\/h3>\n
    \n
  1. Start thinking and planning now. You need to have updated and issued your new data protection policy by April next year and you need to start the consent process probably early in the New Year. This will ensure that you are ship shape for May.<\/li>\n
  2. Be aware that these regulations reverse the burden of proof so that in future you, the employer, will have to prove that what you did was reasonable rather than your employee\u00a0having to prove that what you did was unreasonable.<\/li>\n
  3. Be prepared to begin issuing Privacy Notices to all job applicants from next April or May. If you have a particularly long lead time when appointing staff, you may need to begin this even earlier than April.<\/li>\n
  4. Prioritise carrying out a data protection audit so you are clear what needs to be done and where you might be exposed, so that actions can be taken prior to May 2018.<\/li>\n
  5. Involve IT as they will be invaluable when it comes to discussions about tightening up access to personal and sensitive data that is held. Also, involve your company secretarial function in relation to checking that your data protection registration is up to date.<\/li>\n<\/ol>\n

    Don\u2019ts<\/h3>\n
      \n
    1. Be complacent. Fines of up to 20 million Euros or 4% of your annual turnover is massive and should be highlighted to every Director, Non-exec Director and Senior Manager in the business so that these regulations are taken seriously. You should also consider workshops for all supervisors, line managers and directors to ensure full understanding of obligations.<\/li>\n
    2. Ignore job applicants and ex-employees. You need to be aware of what data you hold and what you hold it for and what consent you have so that you are legal and compliant.<\/li>\n
    3. Sit on data access requests or enquiries about the right to be forgotten. For access requests, the timescale is reducing from 40 days to one month.<\/li>\n
    4. Forget to communicate to staff the \u2018why\u2019 as well as the \u2018what\u2019 when you are getting consent or introducing new policies. Full communication with staff is really important.<\/li>\n
    5. Leave your staff representatives out of discussions between now and the date of introduction in 2018. They should be involved in the new policy you are going to implement and might also be able to support with the data protection audit.<\/li>\n<\/ol>\n

      And Finally\u2026<\/h3>\n

      10.5 Do not allow Group Think to give you a sense that all is okay. You need external eyes and different opinions to allow for full testing\/challenging of what you currently do. This is not a time for egos or defensiveness but simply an open-eyed review of what you do and what needs to change.<\/p>\n

      We have GDPR policies, a management guide, audit, checklists and contracts with GDPR clauses on Docs Wizard, available to premium subscribers. View the GDPR Docs here<\/a>. Sign up for membership here.<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"

      The GDPR (General Data Protection Regulations) come into force in May 2018. They require a significantly different approach to the…<\/p>\n","protected":false},"author":1,"featured_media":7937,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"pmpro_default_level":0,"footnotes":""},"categories":[1],"tags":[],"yoast_head":"\n10.5 Top Tips for GDPR Planning - Docs Wizard<\/title>\n<meta name=\"description\" content=\"General Data Protection Regulations (GDPR) require a significantly different approach to the management of Data Protection management currently, here are our top tips to prompt your thinking and planning.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/\" \/>\n<meta property=\"og:locale\" content=\"en_GB\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"10.5 Top Tips for GDPR Planning - Docs Wizard\" \/>\n<meta property=\"og:description\" content=\"General Data Protection Regulations (GDPR) require a significantly different approach to the management of Data Protection management currently, here are our top tips to prompt your thinking and planning.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/\" \/>\n<meta property=\"og:site_name\" content=\"Docs Wizard\" \/>\n<meta property=\"article:published_time\" content=\"2017-06-16T13:34:25+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2018-03-19T09:59:48+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2017\/06\/GDPR-Planning-1.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"300\" \/>\n\t<meta property=\"og:image:height\" content=\"300\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"elmscreative\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@docswizard\" \/>\n<meta name=\"twitter:site\" content=\"@docswizard\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"elmscreative\" \/>\n\t<meta name=\"twitter:label2\" content=\"Estimated reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/\"},\"author\":{\"name\":\"elmscreative\",\"@id\":\"https:\/\/www.docswizard.co.uk\/#\/schema\/person\/340d27f61b24405670d6f5a8b6def49a\"},\"headline\":\"10.5 Top Tips for GDPR Planning\",\"datePublished\":\"2017-06-16T13:34:25+00:00\",\"dateModified\":\"2018-03-19T09:59:48+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/\"},\"wordCount\":511,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\/\/www.docswizard.co.uk\/#organization\"},\"image\":{\"@id\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2017\/06\/GDPR-Planning-1.jpg\",\"articleSection\":[\"HR Docs Top Tips\"],\"inLanguage\":\"en-GB\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/\",\"url\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/\",\"name\":\"10.5 Top Tips for GDPR Planning - Docs Wizard\",\"isPartOf\":{\"@id\":\"https:\/\/www.docswizard.co.uk\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2017\/06\/GDPR-Planning-1.jpg\",\"datePublished\":\"2017-06-16T13:34:25+00:00\",\"dateModified\":\"2018-03-19T09:59:48+00:00\",\"description\":\"General Data Protection Regulations (GDPR) require a significantly different approach to the management of Data Protection management currently, here are our top tips to prompt your thinking and planning.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#breadcrumb\"},\"inLanguage\":\"en-GB\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-GB\",\"@id\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#primaryimage\",\"url\":\"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2017\/06\/GDPR-Planning-1.jpg\",\"contentUrl\":\"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2017\/06\/GDPR-Planning-1.jpg\",\"width\":300,\"height\":300},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.docswizard.co.uk\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"10.5 Top Tips for GDPR Planning\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.docswizard.co.uk\/#website\",\"url\":\"https:\/\/www.docswizard.co.uk\/\",\"name\":\"Docs Wizard\",\"description\":\"Template HR and H&S documents for SMEs\",\"publisher\":{\"@id\":\"https:\/\/www.docswizard.co.uk\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.docswizard.co.uk\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-GB\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.docswizard.co.uk\/#organization\",\"name\":\"Docs Wizard\",\"url\":\"https:\/\/www.docswizard.co.uk\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-GB\",\"@id\":\"https:\/\/www.docswizard.co.uk\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2021\/12\/docs_wizard_logo.png\",\"contentUrl\":\"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2021\/12\/docs_wizard_logo.png\",\"width\":5634,\"height\":1342,\"caption\":\"Docs Wizard\"},\"image\":{\"@id\":\"https:\/\/www.docswizard.co.uk\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/x.com\/docswizard\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.docswizard.co.uk\/#\/schema\/person\/340d27f61b24405670d6f5a8b6def49a\",\"name\":\"elmscreative\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-GB\",\"@id\":\"https:\/\/www.docswizard.co.uk\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/c7d11cdc69a876bbb96993d753937dbe?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/c7d11cdc69a876bbb96993d753937dbe?s=96&d=mm&r=g\",\"caption\":\"elmscreative\"},\"url\":\"https:\/\/www.docswizard.co.uk\/author\/elmscreative\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"10.5 Top Tips for GDPR Planning - Docs Wizard","description":"General Data Protection Regulations (GDPR) require a significantly different approach to the management of Data Protection management currently, here are our top tips to prompt your thinking and planning.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/","og_locale":"en_GB","og_type":"article","og_title":"10.5 Top Tips for GDPR Planning - Docs Wizard","og_description":"General Data Protection Regulations (GDPR) require a significantly different approach to the management of Data Protection management currently, here are our top tips to prompt your thinking and planning.","og_url":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/","og_site_name":"Docs Wizard","article_published_time":"2017-06-16T13:34:25+00:00","article_modified_time":"2018-03-19T09:59:48+00:00","og_image":[{"width":300,"height":300,"url":"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2017\/06\/GDPR-Planning-1.jpg","type":"image\/jpeg"}],"author":"elmscreative","twitter_card":"summary_large_image","twitter_creator":"@docswizard","twitter_site":"@docswizard","twitter_misc":{"Written by":"elmscreative","Estimated reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#article","isPartOf":{"@id":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/"},"author":{"name":"elmscreative","@id":"https:\/\/www.docswizard.co.uk\/#\/schema\/person\/340d27f61b24405670d6f5a8b6def49a"},"headline":"10.5 Top Tips for GDPR Planning","datePublished":"2017-06-16T13:34:25+00:00","dateModified":"2018-03-19T09:59:48+00:00","mainEntityOfPage":{"@id":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/"},"wordCount":511,"commentCount":0,"publisher":{"@id":"https:\/\/www.docswizard.co.uk\/#organization"},"image":{"@id":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#primaryimage"},"thumbnailUrl":"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2017\/06\/GDPR-Planning-1.jpg","articleSection":["HR Docs Top Tips"],"inLanguage":"en-GB","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/","url":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/","name":"10.5 Top Tips for GDPR Planning - Docs Wizard","isPartOf":{"@id":"https:\/\/www.docswizard.co.uk\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#primaryimage"},"image":{"@id":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#primaryimage"},"thumbnailUrl":"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2017\/06\/GDPR-Planning-1.jpg","datePublished":"2017-06-16T13:34:25+00:00","dateModified":"2018-03-19T09:59:48+00:00","description":"General Data Protection Regulations (GDPR) require a significantly different approach to the management of Data Protection management currently, here are our top tips to prompt your thinking and planning.","breadcrumb":{"@id":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#breadcrumb"},"inLanguage":"en-GB","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/"]}]},{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#primaryimage","url":"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2017\/06\/GDPR-Planning-1.jpg","contentUrl":"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2017\/06\/GDPR-Planning-1.jpg","width":300,"height":300},{"@type":"BreadcrumbList","@id":"https:\/\/www.docswizard.co.uk\/top-tips-gdpr-planning\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.docswizard.co.uk\/"},{"@type":"ListItem","position":2,"name":"10.5 Top Tips for GDPR Planning"}]},{"@type":"WebSite","@id":"https:\/\/www.docswizard.co.uk\/#website","url":"https:\/\/www.docswizard.co.uk\/","name":"Docs Wizard","description":"Template HR and H&S documents for SMEs","publisher":{"@id":"https:\/\/www.docswizard.co.uk\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.docswizard.co.uk\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-GB"},{"@type":"Organization","@id":"https:\/\/www.docswizard.co.uk\/#organization","name":"Docs Wizard","url":"https:\/\/www.docswizard.co.uk\/","logo":{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/www.docswizard.co.uk\/#\/schema\/logo\/image\/","url":"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2021\/12\/docs_wizard_logo.png","contentUrl":"https:\/\/www.docswizard.co.uk\/wp-content\/uploads\/2021\/12\/docs_wizard_logo.png","width":5634,"height":1342,"caption":"Docs Wizard"},"image":{"@id":"https:\/\/www.docswizard.co.uk\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/docswizard"]},{"@type":"Person","@id":"https:\/\/www.docswizard.co.uk\/#\/schema\/person\/340d27f61b24405670d6f5a8b6def49a","name":"elmscreative","image":{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/www.docswizard.co.uk\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/c7d11cdc69a876bbb96993d753937dbe?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/c7d11cdc69a876bbb96993d753937dbe?s=96&d=mm&r=g","caption":"elmscreative"},"url":"https:\/\/www.docswizard.co.uk\/author\/elmscreative\/"}]}},"_links":{"self":[{"href":"https:\/\/www.docswizard.co.uk\/wp-json\/wp\/v2\/posts\/2108"}],"collection":[{"href":"https:\/\/www.docswizard.co.uk\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.docswizard.co.uk\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.docswizard.co.uk\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.docswizard.co.uk\/wp-json\/wp\/v2\/comments?post=2108"}],"version-history":[{"count":0,"href":"https:\/\/www.docswizard.co.uk\/wp-json\/wp\/v2\/posts\/2108\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.docswizard.co.uk\/wp-json\/wp\/v2\/media\/7937"}],"wp:attachment":[{"href":"https:\/\/www.docswizard.co.uk\/wp-json\/wp\/v2\/media?parent=2108"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.docswizard.co.uk\/wp-json\/wp\/v2\/categories?post=2108"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.docswizard.co.uk\/wp-json\/wp\/v2\/tags?post=2108"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}