Archives

Blog

Application of Legitimate Interests
Application of Legitimate Interests

The European Data Protection Board has published an analysis by TJ McIntyre, one of their panel of experts, about legitimate interests, looking back at many cases where controllers have fallen foul of the GDPR by not applying it properly.  It’s long and detailed,...

DSPT Update
DSPT Update

The DSPT has had major updates for this year. The submission deadline is 30th June 2026, and you are advised to take note of the following. The outcomes and assertions of the DSPT which must be included in a 25-26 DSPT Audit for NHS Trusts, ICBs, ALBs, CSU,...

Cyber Essentials – the Danzell Update
Cyber Essentials – the Danzell Update

Each year, the Cyber Essentials scheme is revised to ensure it remains relevant to the current threat landscape. This blog provides a summary of what’s new for 2026. We also detail how this year’s changes to the scheme affect your Cyber Essentials/Cyber Essentials...

The Cyber Threat
The Cyber Threat

Internet connectivity brings great benefits. However, this is also exploited by those wishing to cause harm. It is important to identify those threats and help protect your business. Your prosperity depends on the internet. In an increasingly inter-connected world,...

Developing a Strong Website Security Strategy
Developing a Strong Website Security Strategy

As a business owner, you probably own and manage a website; it’s central to your online presence, and a crucial platform for making sales and growing a business. But have you thought about the security implications of your website? Just like any other system, emails,...

DSPT: Why Care Providers Need to Comply
DSPT: Why Care Providers Need to Comply

Establishing Best Practices in Data Security and Patient Trust The Data Security and Protection Toolkit (DSPT) is a critical framework designed to ensure that care providers, including those in the health and social care sectors, adhere to stringent data security...

Navigating the UK GDPR: What Business Owners Need to Know

An Overview of the General Data Protection Regulation (GDPR) Introduction The General Data Protection Regulation (GDPR) is a regulatory framework enacted by the European Union (EU) in 2018 to protect individuals' personal data and privacy. Since it came into effect,...

ESA’s 2nd Batch Publication

The three European Supervisory Authorities (EBA, EIOPA, and ESMA – the ESAs) have published a second batch of policy products under the Digital Operational Resilience Act (DORA). This batch consists of four final draft regulatory technical standards (RTS), one set of...

Creating an AI Policy

If you are considering integrating AI into your business? Are you not sure where to start, or how to navigate the challenges? Fear not, you are not alone. That statement is not helpful I know, but don’t worry, we are very helpful indeed! Many organisations...