Skip to content
Small Business UK

Small Business UK

Advice and Ideas for UK Small Businesses and SMEs

  • My Account
  • Login
  • facebook
  • x
  • linkedin
  • RSS
  • Start
    • Start a New Business
    • Startup Funding and Grants
    • Sole Trader
    • Banking
    • Getting Online
  • Run
    • Customer Engagement
    • Employing & Managing Staff
    • Insurance
    • Marketing
    • Payments
    • Accounting
    • Tax
  • Grow
    • Funding Your Business
    • Grants
    • Alternative Finance
    • Import & Export
    • Buying & Selling a Company
  • News
  • Get Small Business Funding
  • Memberships
    • Business Essentials
    • Pro
    • Earn with us
  • More
    • Popular Topics
      • Advice
      • Business Loans
      • Business Management
      • Crowdfunding
      • Funding
      • Ideas & Planning
      • International Business
      • Franchising
      • Legal Advice
      • Office & Homeworking
      • Payroll
      • Productivity
      • Setting up a Company
      • Success Stories
      • Technology
      • Work Life Balance
    • Guides
      • Whitepapers & Downloads
      • Partner Content
      • Business car leasing
      • Small business insurance
    • Business Tools
      • Compare business bank accounts
      • Making Tax Digital
      • Website Checker
    • Partners
      • British Small Business Grants
      • Events
      • Masterclass Series
      • Smart Energy GB
      • The Start-Up Series
    • Multi-Media Content
      • Galleries
      • Podcasts
      • Videos
  • Start
    • Start a New Business
    • Startup Funding and Grants
    • Sole Trader
    • Banking
    • Getting Online
  • Run
    • Customer Engagement
    • Employing & Managing Staff
    • Insurance
    • Marketing
    • Payments
    • Accounting
    • Tax
  • Grow
    • Funding Your Business
    • Grants
    • Alternative Finance
    • Import & Export
    • Buying & Selling a Company
  • News
  • Get Small Business Funding
  • Memberships
    • Business Essentials
    • Pro
    • Earn with us
  • More
    • Popular Topics
      • Advice
      • Business Loans
      • Business Management
      • Crowdfunding
      • Funding
      • Ideas & Planning
      • International Business
      • Franchising
      • Legal Advice
      • Office & Homeworking
      • Payroll
      • Productivity
      • Setting up a Company
      • Success Stories
      • Technology
      • Work Life Balance
    • Guides
      • Whitepapers & Downloads
      • Partner Content
      • Business car leasing
      • Small business insurance
    • Business Tools
      • Compare business bank accounts
      • Making Tax Digital
      • Website Checker
    • Partners
      • British Small Business Grants
      • Events
      • Masterclass Series
      • Smart Energy GB
      • The Start-Up Series
    • Multi-Media Content
      • Galleries
      • Podcasts
      • Videos
  • My Account
  • Login
Home » Running a Business » Legal advice » GDPR and Brexit – 5 steps your small business can take

GDPR and Brexit – 5 steps your small business can take

Lock down: small businesses that receive customer data from Europe face challenges

Ian Osborneby Ian Osborne26 September 2019

Small businesses may be overconfident they are Brexit ready when it comes to GDPR compliance, says Ian Osborne. He offers 5 tips to keep your SME within the law.

Whatever side of the Brexit debate you sit on, it is becoming increasingly likely that the UK will no longer be part of the EU from the end of October.

This presents an array of challenges – and arguably opportunities – for small and medium-sized enterprises (SMEs).

However, one key aspect that business leaders must be aware of is GDPR and Brexit and how leaving the EU will affect their operations in terms of data security.

See also: GDPR one year on: what fines have been issued so far?

What the government says you should do

Guidance from the Information Commissioner’s Office (ICO) has confirmed that whether we leave with EU with or without a deal, most of the data protection rules affecting SMEs will remain the same.

The good news is that UK businesses that comply with GDPR and have no contacts or customers in the EEA (the EEA is the EU plus Iceland, Norway and Liechtenstein) don’t need to do much more to prepare for data protection after Brexit.

What if you receive data from Europe?

However, UK businesses that receive personal data from contacts within the EEA must take additional steps to ensure they are fully compliant after Brexit, which may require designating a representative in the EEA.

Brexit aside, there remain questions as to how compliant with GDPR small businesses are across the UK, despite it being a year since the legislation was introduced.

To gauge the attitude of businesses, Shred-it commissioned a survey of 1,439 UK-based SMEs which found that 72pc of respondents said they were very aware of GDPR.

Is small business GDPR confidence justified?

While this is positive news, the biggest concern is whether that confidence in GDPR-readiness is justified. Less than half (45pc) of the firms who said they were ready to deal with data protection requirements also said they had reviewed their data protection policies recently. Just over a third had emailed their customers to confirm consent to data use, less than a quarter had published a privacy notice, and just over two in 10 had reviewed, deleted or destroyed personal data.

These results indicate an imperative that SMEs need to take a more proactive approach to data protection.

See also: 9 steps to GDPR compliance for your first business website

Shredding documents

5 things you need to do to be GDPR compliant

  1. Stay up to date with privacy laws: First things first. Businesses must stay up to date with privacy laws and understand what action – if any – they need to take to comply – particularly post-Brexit. The ICO provides clear guidance on its website.
  2. GDPR affects paper records as well: What’s also important to remember is that data protection refers to both digital information, as well as paper records.For digital data, companies can take simple measures to ensure they are compliant with GDPR, including setting secure usernames, passwords and PINs for all devices, installing anti-virus software and a firewall on hard drives, avoiding sharing files on public Wi-Fi or posting confidential files on social media platforms, and avoiding opening files or links from an unknown sender.
  3. Do not keep personal information on desks: As with digital data, companies should also have strict internal procedures in place to deal with the protection of paper records. Inadequate long-term storage of paper documents, such as archives with unrestricted access, are a key point of vulnerability. Important documents containing personal information left on printers, desks and in waste-paper baskets overnight are also a compliance risk. Best practice should include the provision of locked confidential information consoles that are easily accessible, and company-wide policies that encourage a clean desk at night.
  4. Destroy documents after mandated storage: Businesses should also be arranging for the secure destruction of documents after use or after prescribed periods of mandated storage, keeping only digital copies of essential files in an encrypted format.
  5. Ensure staff understand data protection policy: But, more important than all, businesses must have a strict policy on data protection that is communicated clearly to all employees and updated whenever necessary, in order to avoid a potential breach.

Ian Osborne is vice-president UK and Ireland, Shred-it

Further reading

What does GDPR mean to me and my business?

Tagged: Brexit, Data Protection, GDPR
Ian Osborne

Ian Osborne

Ian Osborne is vice-president UK and Ireland, Shred-it. More by Ian Osborne

Related Topics

Brexit
Data Protection
GDPR

Related Stories

Legal advice

A guide to trade marks and the benefits of registration

SmallBusiness.co.uk and intellectual property specialist NOVAGRAAF provide this guide to trade marks and the benefits of registering them.

Legal advice

The new Procurement Act and how it affects SMEs

The overdue Procurement Act 2023 is finally in force. Shaun Toner explains how the new frameworks are advantageous to small businesses

Legal advice

Need to know: Age discrimination laws

Getting to grips with the minefield that is age discrimination is a perennial problem for small sized businesses, but owners ignore these issues at their peril.

Legal advice

How to get a sponsor licence in the UK

Baya Immigration lay out what a sponsor licence is, which businesses need it and how you go about applying for one.

Helping you grow your business is our number one priority, if you would like to take your business to the next step just sign up!

sign up now

Related Stories

Legal advice

A guide to trade marks and the benefits of registration

SmallBusiness.co.uk and intellectual property specialist NOVAGRAAF provide this guide to trade marks and the benefits of registering them.

Legal advice

The new Procurement Act and how it affects SMEs

The overdue Procurement Act 2023 is finally in force. Shaun Toner explains how the new frameworks are advantageous to small businesses

Legal advice

Need to know: Age discrimination laws

Getting to grips with the minefield that is age discrimination is a perennial problem for small sized businesses, but owners ignore these issues at their peril.

Legal advice

Business Companion launch invaluable free guide to Contract Law Basics

This new guide from Business Companion will help navigate contract law and secure the future of your small firm

SmallBusiness.co.uk provides advice and useful guides to UK sole traders and small businesses. Our goal is to help owner managers and entrepreneurs to start, run, grow and succeed in business, helping turn your business idea into a profitable business.

Further Information

  • Contact Details
  • Privacy Policy
  • Terms & Conditions
  • Blog
  • About this Website
  • Media Packs
  • Contributor guidelines
  • Small Business Whitepapers

Manage my preferences

  • Edit preferences

Contact us

  • +44(0) 207 846 1378

Address

  • Stubben Edge
  • 77 Cornhill
  • London
  • EC3V 3QQ