Data Protection Network
Philippa Donn (CIPP/E, CIPM), co-owner of DPN Associates advises clients on data protection and ePrivacy across a variety of sectors. She particularly enjoys tackling marketing activities, tricky Data Subject Access Requests, developing straight-forward policies/procedures and solving problems. Phil has authored and edited numerous data protection guides. Driven by finding pragmatic solutions to mitigate risk, she previously worked in data compliance for Acxiom.

Managing Erasure Requests or DSARs via Third-Party Portals

A number of online portals offer to help consumers exercise their privacy rights, but how should organisations handle such requests?

Are Data Subject Access Requests driving you crazy?

A fundamental right, but could the process be tinkered with to ease the burden on small to medium-sized organisations?

Cabinet Office data breach fine – 6 key takeaways

What can we all learn from the Cabinet Office data breach? What went wrong and how to businesses avoid making the same mistakes?

Privacy Management Programme – what does one look like?

What is a Privacy Management Programme? What core elements would it cover? What would you be required to do if you had to implement a PMP?

Direct marketing: household names fined for breaking the rules

As household names are fined for contravening direct marketing rules, we take a look at what they got wrong and potential risks for others...

ICO says most public sector messages are not direct marketing

The ICO issues controversial new guidance on public sector communications - what does it mean, what is direct marketing and what isn't?

Data Protection by Design: Part 3 – Data Protection Impact Assessments

How to get your Data Protection Impact Asssessment process on track - when should you do one, what should you process look like? Get some useful tips...

Data Protection by Design: Part 1 – The Basics

What does ‘Data Protection by Design’ really mean (and why is it also called ‘Privacy by Design’)? Do you need to be concerned about it? And how do you approach it in practice?
Data Protection Network