GDPR | Become compliant, remain compliant.

UtopiaR is a GDPR Data Protection Impact Assessment solution, helping you to become and stay GDPR compliant as your business changes.

UtopiaR Data Protection Impact Assessment Highlights

  • Gain confidence and trust by using our effective and intuitive assessment tool.
  • Creation and management of accurate and comprehensive Data Protection Impact Assessments (Art.35) (also known as Privacy Impact Assessments).
  • Ensure that your business meets GDPR’s requirements for Privacy by Design and Default (Art.25), simultaneously using our solution to identify other potential non-compliant areas.
  • A cost effective and cloud-based solution, suitable for users of all levels of experience and competency.
GDPR Compliance Deadline Date

Don’t wait – Take action now

The EU General Data Protection Regulation (GDPR) takes effect on 25th May 2018, and will control the management and processing of all personal data throughout the countries of the European Union. Even following Brexit, it will remain a significant element of future data protection legislation within the UK.

From 2018, GDPR no longer requires data controllers to register with their local Data Protection Authority. Instead, they will be required to maintain comprehensive records of data processing activities (Art.30) which demonstrate how they provide effective protection for personal data. An accurate Data Protection Impact Assessment is required, which may be requested at any time by the Supervisory Authority, and which many organisations are deciding to share with data subjects in order to build confidence and trust. Our UtopiaR solution extends beyond traditional thinking, to highlight and report issues and observations which require remediation, providing timely and valuable protection for our customers.


Our UtopiaR solution allows for the creation and management of accurate Privacy Impact Assessments, providing a record of:

  • The data processing activity being assessed, and how personal data is being processed.
  • The categories of personal data which are being processed, and which personnel and/or IT systems have access to it.
  • Where the personal data is to be processed or stored and details of any third parties who may be involved in its processing.
  • Whether appropriate data protection training and awareness has been conducted, so that everyone involved in the activity is aware of their roles and responsibilities.
  • Detailed data flows of how the personal data moves through the various stages of the activity.
  • The assessment against data protection legislation, for example whether data subject consent has been obtained and how data breaches are to be identified and reported.
utopiar snip

Article 25 of the EU General Data Protection Regulation (GDPR) requires that “data protection by design and default” is delivered in the processing of personal data. This approach is not new and is best evidenced by the completion of a Data Protection Impact Assessment, which under Article 35 of GDPR is required for all data processing activities which are “likely to result in a high risk to the rights and freedoms of natural persons”.

The conducting of effective Data Protection Impact Assessments (also known as Privacy Impact Assessments) are at the heart of “Privacy by Design and Default”. This activity has a number of distinct roles which are addressed by the UtopiaR solution:

  • To understand and implement effect privacy controls into all data processing activities.
  • To identify and escalate data protection and privacy issues that may be identified during the course of an assessment.
  • To reduce the exposure, associated costs and legislative penalties from data protection and privacy risks that otherwise may not have been discovered.
  • To produce comprehensive Data Protection Impact Assessments which can be provided to the Supervisory Authority upon request (e.g. in the event of an investigation).
  • To provide an option for sharing transparency of how personal data is being processed with data subjects, to build confidence and trust.
  • To support existing information security best practice for those who undertake risk management activities, for example as part of their ISO27001 information security certification.

Pricing

Simple

Who

Sole traders
Self-employed
Amateur sports teams and clubs

Includes

Up to 5 personal data processing activities
Cloud-based access
Basic support (ticket based system) 24 hour
No minimum contract

£100 / 1 Year
£250 / 3 Years
Try it now
Advanced

Who

Small businesses
Small organisiations
Sports teams and clubs

Includes

Up to 10 personal data processing activities
Cloud based access
Advanced support –
3 hour turnaround for queries
No minimum contract

£400 / Year
£1,000 / 3 Years
Try it now
Professional

Who

Mid-sized organisations

Includes

Up to 30 personal data processing activities
Cloud-based Access
Advanced support –
3 hour turnaround for queries
No minimum contract

£1,000 / Year
£2,600 / 3 Years
Try it now
Enterprise

Who

Large organisations

Includes

Up to 100 personal data processing activities
Cloud-based access
Dedicated account team
Includes GDPR Doc Pack
No minimum contract

 

 

 

 

Contact Us
Contact Us
Try it now
Charities / Schools

Who

Registered charities
Schools

Includes

Up to 100 personal data processing activities
Cloud-based Access
Advanced support – 3 hour turnaround for queries
Includes GDPR Doc Pack
No minimum contract

£1,000 / Year
£2,600 / 3 Years
Try it now

Need to show your valued customers that you take data privacy seriously? Let's talk about putting UtopiaR to work today.

Find out more