We Are Not There Yet: The Implications of Insufficient Knowledge Management for Organisational Compliance

Since GDPR went into effect in 2018, many other data protection and privacy regulations have been released. With the new regulation, there has been an associated increase in industry professionals focused on data protection and privacy. Building on related work showing the potential benefits of knowledge management in organisational compliance and privacy engineering, this paper presents the findings of an exploratory qualitative study with data protection officers and other privacy professionals. We found issues with knowledge management to be the underlying challenge of our participants' feedback. Our participants noted four categories of feedback: (1) a perceived disconnect between regulation and practice, (2) a general lack of clear job description, (3) the need for data protection and privacy to be involved at every level of an organisation, (4) knowledge management tools exist but are not used effectively. This paper questions what knowledge management or automation solutions may prove to be effective in establishing better computer-supported work environments.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
12/15/2022

The Data Protection Officer, an ubiquitous role nobody really knows

Among all cybersecurity and privacy workers, the Data Protection Officer...
research
12/23/2020

Compliance Generation for Privacy Documents under GDPR: A Roadmap for Implementing Automation and Machine Learning

Most prominent research today addresses compliance with data protection ...
research
08/18/2022

Understanding the Implementation of Technical Measures in the Process of Data Privacy Compliance: A Qualitative Study

Modern privacy regulations, such as the General Data Protection Regulati...
research
08/22/2018

Are we there yet? Understanding the challenges faced in complying with the General Data Protection Regulation (GDPR)

The EU General Data Protection Regulation (GDPR), enforced from 25th May...
research
03/27/2023

Design, Implementation, and Automation of a Risk Management Approach for Man-at-the-End Software Protection

The last years have seen an increase in Man-at-the-End (MATE) attacks ag...
research
05/08/2018

Survey on data management in radiation protection research

The importance of datasharing is of increasing concern to funding bodies...

Please sign up or login with your details

Forgot password? Click here to reset