Briefing collection
Compliance, Standards and Contracts
Compliance, Standards and Contracts reviews, comparisons and buying guides from Assured Cyber Protection.
GDPR Special Category Data: What It Is and How to Handle It Safely
A plain-English guide to GDPR special category data: the nine types, the Article 9 conditions for processing, and what UK organisations must put in place.
Read briefing
Lawful Basis for Processing Personal Data: Six Bases Explained
The lawful basis for processing data under UK GDPR, all six Article 6 bases explained with examples, plus the new recognised legitimate interest from 2026.
Read briefing
What Is a Data Retention Policy and How Long to Keep Data?
What is a data retention policy, why UK GDPR makes you set your own retention periods, and how long to keep tax, payroll, HR and CCTV records.
Read briefingUK Cyber Security and Resilience Bill: What SMBs Need to Know
What the UK Cyber Security and Resilience Bill means for small businesses, who is in scope, the 24-hour reporting rule and how supply chains are affected.
Read briefingWhat Is a Data Subject Under UK GDPR?
What a data subject is under UK GDPR, the rights they hold, how they differ from controllers and processors, and what the 2025 DUAA changed.
Read briefingWho Is Responsible for Enforcing the GDPR in the UK?
Who is responsible for enforcing the GDPR in the UK, who must notify the ICO of a breach, the 72-hour rule and the fines that follow non-compliance.
Read briefingGDPR Audit: How to Run One Yourself and When to Bring in Help
A practical GDPR audit guide for UK businesses: the steps to run a data protection audit yourself, the ICO tools to use, and when to call in a specialist.
Read briefingTypes of GDPR Data Breach: Confidentiality, Integrity and Availability
What is a confidentiality breach in the context of GDPR? The three breach types, integrity and availability breaches, examples, and when you must tell the ICO.
Read briefingUK GDPR and the Data Protection Act 2018: A Guide for Small Businesses
How the Data Protection Act 2018 and UK GDPR work together, what small businesses must do, ICO fees, and the 2025 Data Use and Access Act changes.
Read briefingThe 8 Principles of Data Protection: Why There Are Now 7
The 8 principles of data protection came from the 1998 Act. UK GDPR has 7. Here is the current list, what changed, and what the 2025 DUAA means.
Read briefing