In effect, complying with Organic Law 3/2018, of 5 December, on the Protection of Personal Data and Digital Rights Guarantee (LOPDGDD) is mandatory for all companies, associations, professionals, and organisations in general, provided that they collect personal data for subsequent processing.
Therefore, from the communities of neighbours or professionals to SMEs and large companies, they must adapt their businesses in order to comply with the regulations, for the benefit of their customers and employees.
To undertake an initial review, we will need an organisational chart of your company, split by department, the contact of the professional or company that maintains your information systems, a list of suppliers with access to personal data, a list of equipment, programs, and personnel.
According to the person assigned to your company or project, we carry out a situation report, we structure the company into Processing Activities, we carry out a risk analysis on each of these, and depending on the result, we carry out an Impact Analysis. We also suggest the necessary security measures to preserve the management of personal data. We suggest the policies and procedures necessary for compliance with the GDPRgdd and we train all staff on the changes made, their obligations and functions regarding the processing of data.