Guardum comment: data adequacy decision

With time running out to secure a data adequacy decision before the end of the Brexit transition period – Darren Wray, CTO at data…

Share this article:

With time running out to secure a data adequacy decision before the end of the Brexit transition period – Darren Wray, CTO at data privacy experts Guardum offers the following comment and advice for businesses to be prepared:

“As crazy as it may seem given that the UK has been part of EU Data Privacy since 1984, when the UK ends its transitionary stage with the EU at the end of the year, it will not automatically retain its GDPR equivalency. The UK will become a ‘third country’, meaning that personal data cannot be transferred to the UK without special contractual agreements being put in place by organisations and their partners. Unfortunately, the validity of such contractual arrangements is likely to be challenged.

If this situation wasn’t complicated enough, a recent court case between Max Schrems and Facebook in Ireland has seen the ability for organisations in the EU to send data to the US for processing. What difference does this make to the UK? Well, the Schrems II ruling was based on the US Government’s abilities to seize or snoop on data without the ability for citizens (EU or otherwise) to have any recourse. These abilities were revealed as part of the revelations by Edward Snowden. Unfortunately, the UK was also named as a partner in many of the global surveillance programmes revealed by Snowden. This, combined with regulation such as the Regulatory Investigatory Powers Act 2000 (RIPA) which enshrines state surveillance in UK law, means that EU firms will be forced to see the UK as not offering adequate EU data protection.

So what should companies with partners in the EU and other parts of the world be doing now to prepare for the end of the UK’s transition?

  1. Understand your data flows

Make sure that you know what personal data you are sending, to who and what country they are based in. This should be something that all organisations have a good understanding of as part of their GDPR compliance, but things change, so now is a good time to make sure that everything is up to date.

Don’t forget to include the companies who host your corporate data, including services such as Office 365 that provide data storage and the processing of email.

  1. Understand your client and vendor agreements

Checking through your client and vendor agreements so that they can be amended ahead of time is something that every organisation ought to be doing right now. Unless firms have paid attention to this particular area in the past then there is likely to be at least some work to be done.

  1. Ensure the protection of your unstructured data

One of the things that is going to change is that, whereas before a company based in the EU could encrypt a document and send it to its UK partner for processing, in future they are likely to need to redact or remove the personal information in any documents. So before they are sent back and forth, they should use automated redaction software to minimize the risks and the workload of this process.”

 

To stay up to date on the latest, trends, innovations, people news and company updates within the global security market please register to receive our newsletter here.

Media contact

Rebecca Morpeth Spayne,
Editor, Security Portfolio

Tel: +44 (0) 1622 823 922
Email: [email protected]

About Security Buyer

Security Buyer is the leading authority in global security content, delivering expert news, in-depth articles, exclusive interviews, and industry insights across print, digital, and event platforms. Published 10 times a year, the magazine is a trusted resource for professionals seeking updates and analysis on the latest developments in the security sector.

To submit an article, or for sponsorship opportunities, please contact our team below.

Rebecca Spayne Picture

Rebecca Spayne

Group Managing Editor

Georgina Turner Picture

Georgina Turner

Sales Manager

Afua Akoto Picture

Afua Akoto

Marketing Manager

Related News

PaxLock Pro2 - securitybuyer.com

Paxton officially launches PaxLock Pro2

Paxton the security technology manufacturer has launched a brand-new re-engineered PaxLock which is built to protect straight
KentixONE data centre - securitybuyer.com

Data centre security with KentixONE

Prior1 develops container data centers to meet the highest security and energy efficiency standards. Their containers require
Chubbsafes - securitybuyer.com

Chubbsafes explores certified storage for jewellery and precious metals

Chubbsafes, part of Gunnebo Safe Storage, has launched a new technical discussion guide examining when certified
Mercury trends report - securitybuyer.com

New Mercury Research Finds Growing Cybersecurity Gap

2026 Trends in Access Controllers Report finds interoperability, cloud connectivity and AI are reshaping long-term controller strategies.
Chris Carroll - securitybuyer.com

Comelit-PAC Promotes Chris Carroll as Sales Director

Comelit-PAC has appointed Chris Carroll as Sales Director, following an 18 year career with the company, seeing him progress
Jason Bezuidenhout - securitybuyer.com

Zygal Appoints Jason Bezuidenhout

Zygal has appointed Jason Bezuidenhout as Chief Revenue Officer (CRO), strengthening its leadership team as the company continues
Eun-Kyung-Hong_- securitybuyer.com

How AI Manages Mixed Surveillance Workloads

Eun-Kyung Hong, HDD Product Manager at Toshiba Electronics Europe GmbH discusses AI optimisation in mixed surveillance workloads
ASSA ABLOY - securitybuyer.com

ASSA ABLOY Door Group highlights importance of BS 8214:2026

ASSA ABLOY Door Group is supporting Fire Door Safety Week 2026 by raising awareness of the latest update to BS 8214:2026
OPTEX at Essen - securitybuyer.com

OPTEX to showcase perimeter solutions at Security Essen

OPTEX will present its latest perimeter and asset protection solutions at Security Essen 2026, one of Europe’s leading security trade fairs.
Dallmeier

Building Trust in Modern Video Security

Rebecca Spayne, Managing Editor of Security Buyer, speaks with Josua Braun, Chief Revenue Officer at Dallmeier electronic, about cyber resilience, trusted supply chains, the practical value of artificial intelligence and what security professionals should consider when investing in modern video technology. 
Scroll to Top