🚀 Launch offer: Sign up free and get 60 days full Pro access — no credit card needed. Claim it →

🏛️ GRC Platform

UK GDPR · Cyber Essentials · ISO 27001 · NCSC · ICO · NHS DSPT · Risk Register

Overall
0%
GDPR
0%
Cyber
0%
ISO 27001
0%
Compliance Score
0%
0
Compliant
0
In Progress
20
Not Started
0
N/A
Governance
Data Protection Officer appointedArt. 37Not Started▼
Records of Processing ActivitiesArt. 30Not Started▼
Privacy Notice publishedArt. 13-14Not Started▼
DPIA process in placeArt. 35Not Started▼
Lawful basis documentedArt. 6Not Started▼
Data Subject Rights
DSAR handling processArt. 12-15Not Started▼
Right to Erasure procedureArt. 17Not Started▼
Data Portability capabilityArt. 20Not Started▼
Consent records maintainedArt. 7Not Started▼
Security
Data Breach Response PlanArt. 33-34Not Started▼
Data encryption at rest & transitArt. 32Not Started▼
Access controls & least privilegeArt. 32Not Started▼
Data retention & deletion policyArt. 5(1)(e)Not Started▼
Vendor Management
Data Processing Agreements (DPAs)Art. 28Not Started▼
Vendor due diligence conductedArt. 28Not Started▼
International transfer safeguardsArt. 44-49Not Started▼
Training
Staff GDPR training completedArt. 39Not Started▼
Incident response trainingArt. 32Not Started▼
ICO registration currentDPA 2018Not Started▼
Cookie consent compliancePECRNot Started▼