Chief Data Protection Officer… ‘Nigel Says’…….

Emotional intelligence

Nigel is a rugby ref who is liked by the clubs.

The reason is that Nigel has a adequate knowledge of the laws, understands what they are trying to achieve, understands the game as he played, has empathy on what the players & spectators want, and is able to be pragmatic in the application of the laws to achieve a good balance of player safety & spectator experience.

Nigel believes that this is an ideal balance for a Data Protection Officer.

There to safeguard the data subjects but also ensure that the organisation can carry out it’s organisational goals.

A DPO who understands the laws, and what they are trying to achieve, has experience in operations, has empathy for data subjects and organisation, a knowledge of what they want out of their relationship and is pragmatic it the application of the role to ensure an effective balance of risk to ensure a good user experience.

Of course many will just hire Dog, Duck & Partridge lawyers, Brenda from accounts or some will not bother hiring and will wing it without one until the first data breach or complaint gives an easy “full toss” fine for the regulator for the non-appointment of someone vaguely competent.

The latter making a great statement to their employees and customers that they do not care!

Red card anyone?

#dataprotection #gdpr #dpa #consultancy #training #brexit #DPIA

related posts

Sophie Costain

Should All My Employees Be Able to Recognise a Subject Access Request?

Data protection is not just about cybersecurity; it relies on your employees recognising Subject Access Requests. The statutory one-month deadline begins the moment a request is received, even informally. Discover why training your entire workforce to instantly spot and escalate these requests is essential to avoid serious regulatory compliance breaches.

Read More »
Alex Haslam

DPAS Data Protection Bulletin – July 2026

Welcome back to our monthly DPAS bulletin, where we cover the latest data protection news and developments from around the world.

Ever wondered how a routine government spreadsheet leak turns into a two-year covert court order? How about why the police might feel your mother-in-law’s contact details were key to national security? Have you ever pondered how many working weeks it takes to read a cookie banner? Whether Wall Street knows about your last GP visit? Or if you’re in Australia (g’day) why an AI is sending notes on your worst rashes to faraway cloud servers?

Read about all this and more in our latest DPAS Data Protection Bulletin.

Read More »
Alex Haslam

Root Cause Analysis: A Practical Guide

A practical guide to data breach reporting under UK GDPR, covering when you must notify the ICO, how to report a breach (and what to do if you don’t need to), and when affected individuals need to be told. Includes the key steps, timeframes, and documentation requirements to keep your organisation compliant.

Read More »

Get a Free Consultation