CIO Applications Europe
About UsConferencePartner With Us
Close
  • Applications
      • Business Intelligence & Analytics
      • Call Center Solutions
      • CRM & Customer Experience
      • Data Center
      • Digital Transformation
      • E-Invoicing
      • Intelligent ERP & Automation
      • Risk Management & Compliance
      • Unified Communications (UCaaS)
  • Industries
      • Automotive & Mobility
      • Construction & Infrastructure
      • Financial Services
      • Healthcare
      • Retail & E-commerce
      • Telecom & Media
      • Travel and Hospitality Tech
  • Technologies
      • Cloud
      • Cybersecurity & Resilience
      • Data Engineering & Analytics
      • Generative and Agentic AI
      • IoT & Edge Computing
      • Robotics
  • Platforms
      • AWS
      • IBM
      • Microsoft
      • Salesforce
      • SAP
      • ServiceNow
  • Leadership Perspectives
  • Innovation Insights
  • Research
  • News
  • CXO Awards
    • Europe
      • US
  • Topics

  • Menu
      • Business Intelligence & Analytics
      • Cloud
      • Digital Transformation
      • Generative and Agentic AI
      • Microsoft
      • Risk Management & Compliance
      • Travel and Hospitality Tech
      • Unified Communications (UCaaS)
  • Microsoft
  • Risk Management & Compliance
  • Travel and Hospitality Tech
  • Generative and Agentic AI
  • Digital Transformation
  • Business Intelligence & Analytics
  • Cloud
Topics
  • Topics

  • Business Intelligence & Analytics
  • Cloud
  • Digital Transformation
  • Generative and Agentic AI
  • Microsoft
  • Risk Management & Compliance
  • Travel and Hospitality Tech
  • Unified Communications (UCaaS)
  • Home
  • GDPR

A featured contribution from Leadership Perspectives: a curated forum reserved for leaders nominated by our subscribers and vetted by the Construction Tech Review Advisory Board.

Experian’s Head of Data Breach Response Services

Jim Steven

Data Breach Readiness and GDPR: The Goalposts Have Moved

We now live in a post-GDPR world. In the past year, the data breach landscape has changed dramatically for businesses. Preparation for what seems like ubiquitous data breaches are both complicated and more necessary than ever. Outdated cyber security policies can create a hugely volatile situation; businesses may be at risk of breaching legislation, facing large fines, and managing potential reputational damage.

Transparency and Speed…

GDPR has moved the goalposts. For UK businesses with European customers, it’s sometimes hard to interpret the new rules of the game, especially with a small 72-hour window in which to report a breach to regulators. I’m often on the receiving end of that blind panic moment. But what does remain a constant is this: readiness is still the catalyst for providing transparency and speed – the greatest priorities following a breach are to manage and communicate effectively with the authorities and customers.

EXPERIAN RESEARCH:POST BREACH

69% customers would be discouraged from using services

From Reactive to Proactive – but still not truly prepared…

Experian has experienced businesses becoming much more proactive, in recent years. And we welcome that mindset shift. However, there is still much work to be done in relation to educating about the range of potential pitfalls in responding.

Now that GDPR has come into force, UK businesses need international solutions to a data breach response. We no longer see borders, thanks to e-commerce and the evolution of the digital environment we are operating in. And that complicates the way we have to manage incidents.

How to Make Headway…

Most businesses we speak to do understand what is expected from them in terms of GDPR compliance. But they do not fully understand how to fulfil those obligations within the outlined timeframe. And a lot of this comes down to a lack of knowledge of where all their data resides – whether that’s customer’s, and their third-party suppliers’. It’s also linked to different jurisdictional data privacy laws that exist and need to be adhered to across different jurisdictional boundaries. The reality is; advanced assessment and preparation is where a business can make headway.

EXPERIAN RESEARCH: AFTER A BREACH

48% customers would stop using a company

It’s all in the Preparation Detail…

Within the new pan-European GDPR context, the notification process of a data breach comes as one of the biggest surprises to businesses we advise. Small details can become big dilemmas in the heat of the moment. The aftermath of a data breach is no time to be sourcing translators, nor is it an appropriate time to put up a language barrier by assuming everyone speaks English. What is more, any form of correspondence may be used in future litigation, so it needs to be legally watertight, premeditated, clear, and concise. And then there’s the intricate setting-up of phone lines for customer guidance. The question is - Do you have briefed experts, speaking in native tongue at the ready, all operating in the right time zone? And will you use a local, international of Freephone number? These points of detail need the right experts and preparation.

EXPERIAN RESEARCH: AFTER A BREACH

44% customers expect financial compensation

Changing your mindset…

With all this in mind, GDPR is a huge logistical challenge; but it is also a good thing. It puts customers back at the heart of products and services. The negative spin-off though, is that misinterpretation is game changing. Legislation can leave your business and your customers at risk, even if the intention is the opposite. However, despite news headlines, far-reaching international breaches do not have to be catastrophic. If you are prepared, they are challenging, but also manageable.

 
See More:
Top Legal Technology Companies in APAC
Top Legal Tech Consulting Companies 
The articles from these contributors are based on their personal expertise and viewpoints, and do not necessarily reflect the opinions of their employers or affiliated organizations.
The Leadership Perspectives forum brings together voices shaping construction technology and innovation. Participation is by invitation only. It features leaders who are not merely observing technological change, but actively contributing to it through digital transformation and execution-driven insights.
EDITOR'S CHOICE
  • Willis Towers Watson

    Legal & General

    Building Technology Foundations That Last

    Mark Hall, Group Chief Technology Officer

  • Willis Towers Watson

    Adp Uk

    "Shift left" Defect Discovery using Agile and DevOps

    Keith Watson, Director Of Devops

  • Willis Towers Watson

    Motor Oil

    Trust, Security Strategy and the AI-Driven Threat Landscape

    Syngelakis J. Christos, Group Data Protection Officer

  • Willis Towers Watson

    Swiss Re [SWX: SREN]

    A Future of Enhanced Human Work

    Sergio Chelli, IT Procurement Manager at Swiss Re [SWX: SREN]

Weekly Brief

loading

I agree We use cookies on this website to enhance your user experience. By clicking any link on this page you are giving your consent for us to set cookies. More info

×
#

CIO Applications Europe Weekly Brief

Be first to read the latest tech news, Industry Leader's Insights, and CIO interviews of medium and large enterprises exclusively from CIO Applications Europe

Subscribe

loading

THANK YOU FOR SUBSCRIBING

CIO Applications Europe
Follow on LinkedIn

About

  • Home
  • About Us
  • Partner With Us

Stay Connected

  • Subscribe
  • Newsletter
  • Sitemap

Contact Us

  • editor@cioapplicationseurope.com
  • sales@cioapplicationseurope.com
  • marketing@cioapplicationseurope.com

Legal

  • Editorial Policy
  • Privacy Policy
  • Terms of Use

© 2026 CIO Applications Europe. All rights reserved. Headquarteblue in Fort Lauderdale, FL, USA.

This content is copyright protected

However, if you would like to share the information in this article, you may use the link below:

https://gdpr.cioapplicationseurope.com/leadership-perspective/data-breach-readiness-and-gdpr-the-goalposts-have-moved-nid-1033.html