Our methodology
Mapping your organizational structure to clearly establish the audit perimeter
Identifying the applicable data protection legal framework(s)
Listing data protection compliance obligations relevant to your structure
Assessing the adequacy of your data protection policies, procedures, and other organisational measures, in light of relevant requirements
Evaluating whether these are adequately implemented across your organization
Identifying compliance gaps and developing a compliance roadmap with recommendations
Mapping your organizational structure to clearly establish the audit perimeter
Identifying the applicable data protection legal framework(s)
Listing data protection compliance obligations relevant to your structure
Assessing the adequacy of your data protection policies, procedures, and other organisational measures, in light of relevant requirements
Evaluating whether these are adequately implemented across your organization
Identifying compliance gaps and developing a compliance roadmap with recommendations
Our audit methodology includes:
- Comprehensive documentary review;
- Async Q&A sessions and interviews with key internal stakeholders;
- Drafting a comprehensive audit report;
- Submitting the draft report to gather feedback from key stakeholders;
- Finalizing the audit report.
We can undertake audits based on the GDPR, the UK Data Protection Act, the Australian Privacy Act, or a combination of these, as well as against other data protection frameworks.
Through our DP Audit services, we have helped clients ranging from small start-ups to medium and large NGOs, as well as national governmental bodies, understand their regulatory requirements and how to best meet them.