Outsourced DPO – Managed Data Protection Service

What is an Outsourced DPO service?

Here at Fox Red Risk, we know that there is no single tool that can make your organisation 100% GDPR compliant so what we do is tailor an approach to GDPR & PECR compliance that is appropriate for your organisation’s specific needs. Whether your business is large or small, Fox Red Risk can help get you on track with GDPR compliance by providing you with a bespoke Data Protection Service through an Outsourced DPO.

Fox Red’s Data Protection Service is for those organisations that are required by new legislation to employ a full-time Data Protection Officer but simply don’t need a full-time DPO. The Data Protection Service is also for those organisations where someone within the organisation has been assigned the role but needs some expert help. The authors of the General Data Protection Regulation (GDPR) understood these situations can happen and so permit a third party to carry out or support the role.

Is an Outsourced DPO expensive?

No. A Data Protection Service model can be surprisingly cost-efficient as compared to an in-house model – even at scale. The key benefits are on-tap expertise, paying only for what you need which all should lead to reduced data protection risk.

A Data Protection Service can also be a good option should you already know you have very little in place and want to get compliant very quickly with minimum pain. Fox Red Risk’s Data Protection Service can provide your organisation with the tools, templates, policies and procedures needed to support your compliance activities. Not only that but you get subject matter experts who know the data protection regulation inside out.

We keep costs low by using a network of trained Data Protection associates which can expand and contract with demand. We then pass those savings on to you.

What’s included in the core Outsourced DPO Service?

The following are core components of the Data Protection Service (DPaaS):

  • Fox Red Risk will become your organisation’s appointed Data Protection Officer and perform the statutory tasks as laid out in Article 39 of GDPR
  • Fox Red Risk will be the point of contact for Data Subject wishing to make contact with your organisation
  • A Data Protection Specialist will conduct an initial Gap Analysis and make recommendations
  • A Data Protection Specialist will work with your organisation to ensure your privacy notices, data protection policies and procedures are adequate to meet the requirements of GDPR
  • A Data Protection Specialist will support the organisation in regards to a statutory data protection Authority Audit
  • GDPR & PECR Employee Awareness Computer Based Training
  • Periodic Management Reporting (either Monthly or Quarterly)

What is variably costed?

Depending on the size and needs of your organisation, the following aspects of a data protection service can also be provided:

  • Advice and Guidance on GDPR Compliance*
  • Advice and Guidance on PECR Compliance*
  • Supporting the Information Audit Process*
  • Support to the Privacy by Design and Default activities*
  • Consulting on Data Protection Impact Assessment (DPIA) process*
  • Support for the Subject Access Request Process*
  • Advice relating to Outsourcing / Procurement as it relates to Data Protection*

*in excess of the days/credits included as part of the core service

Need something else?

Depending on the size and needs of your organisation, the following aspects of a data protection service can also be provided:

  • Advice and Guidance on GDPR Compliance*
  • Advice and Guidance on PECR Compliance*
  • Supporting the Information Audit Process*
  • Support to the Privacy by Design and Default activities*
  • Consulting on Data Protection Impact Assessment (DPIA) process*
  • Support for the Subject Access Request Process*
  • Advice relating to Outsourcing / Procurement as it relates to Data Protection*

*in excess of the days/credits included as part of the core service

Want to talk to someone about your specific needs?

Insert the name of your company or put 'N/A'
Insert any information you think will be helpful for us to know to support your enquiry.
JUST IN TIME PRIVACY: We collect the above information in line with our Privacy Policy (see main menu) in order to supply you with the information requested. We will not send you unsolicited marketing materials. We will retain your contact information for no more than 6 months unless you choose to engage us in services

Full policy here: https://foxredrisk.com/privacy-policy