At GDPR Compliance Analyst, we help businesses navigate the complexities of GDPR & the EU Data Act. Expect data access requests to rise as new EU consumer rights take effect in September 2025. Take control and find new growth opportunities with our ‘Bought-In DPO Service’.
With non-compliance penalties of up to 20 m Euros, let us prepare an Information Asset Register for all your data sources.
New staff, new clients, new systems and new procedures since May 2018... is all still as compliant as you might hope?
Re-certification of consents, new customer contracts and data sharing agreements, EU data access request management.
We protect businesses from the reputational risk and financial impacts of non-compliance with the EU data related legislation.
To be the ‘Go To’ Data Protection Team in North Surrey
Local and Professional – To provide professional and affordable bought-in DPO services to SME businesses in London and Southern Home Counties.
We work with both private clients and public sector entities in the UK and Europe who appreciate our calm, measured approach and attention to detail.
To demonstrate good stewardship and a thoughtful structured approach.
Client and Third Party Suppliers reviewed
Information Asset Register/ Record of Processing Activities/ Contracts/ Agreements
Data Sharing/ Data Processing reviewed
Our Bought-In DPO Service can pick up the discovery work or audits at any point in your compliance journey
We conduct thorough reviews of your Headquarters, Satellite offices, and Third-Party processors. CAPS Rqrd
We pinpoint compliance vulnerabilities across internal procedures and external transfers.
Address risks via structured projects, such as renewing contracts, revising user access, and purging outdated data.
We’ve successfully delivered GDPR and data protection solutions for leading organizations across financial services, legal, entertainment, and housing sectors, creating robust compliance frameworks tailored to each client’s unique challenges.
Explore how we’ve implemented effective data protection strategies for specific clients, showcasing our practical approach to solving complex compliance challenges across diverse industries.
Major venue group with 50 sites, managing 18M client records including 40K child data entries.
Association managing 37K properties using 100+ interim data systems during major platform transition.
Integrated services provider to European Fund Managers inc new client on-boarding (KYC & AML criminality checks)
Unknown GDPR risks during 2018 and data warehouse containg 450k boxes of case records.
Entertainment Industry - Major venue group with 50 sites, managing 18M client records including 40K child data entries.
Social Housing - Association managing 37K properties using 100+ interim data systems during major platform transition.
Integrated services provider to European Fund Managers inc new client on-boarding (KYC & AML criminality checks)
Unknown GDPR risks during 2018 and data warehouse containg 450k boxes of case records.
Want to delve deeper into our successful collaborations? Explore detailed case studies of how we’ve helped clients achieve their compliance goals.
Trusted by businesses across industries to simplify GDPR compliance.
I worked with Michael at Alter Domus (Luxembourg and UK), as part of the Data Protection Department. Our workstreams crossed many times and I have always benefited from Michael’s outputs. They were always professional and comprehensive, covering all the angles needed for the successful completion of our common tasks. Being the team player he is, he always understood my workstream needs and went above and beyond in obtaining all the data needed for the delivery of complex tasks. His input was always appreciated and on-point and his knowledge of business processes and on how to best obtain the information needed from stakeholders is evidence of his personality and professionalism. It was a pleasure working with you, Michael, and I thoroughly enjoyed our many talks, on data and life
Michael worked for me on GDPR focused business analysis, specially on refining the Information Asset Register (IAR), and building the (Article 30) Controller’s Record of Processing document required by the ICO. This included detailed analysis and verification of the systems and processes used for personal data, and identifying the lawful basis for processing, and subsidiary information. Michael’s work was of high quality and he worked in a highly diligent and methodical manner, often independently. I would happily re-employ Michael for similar work in the future.
Ensure your business is fully compliant with expert guidance. Contact us today for tailored solutions and navigate data protection complexities with ease.