JOIC Data Protection Audit Programme enters Phase Two

The Jersey Office of the Information Commissioner (JOIC) is continuing its programme of data protection audits to raise awareness of the benefits to business of good data protection, improve respect for personal information and ensure organisations across Jersey are compliant with the Data Protection (Jersey) Law 2018.

The programme, which began in November 2020, forms part of the JOIC’s Regulatory Action and Enforcement Policy.
The aim of the programme is to:

● Assist businesses to discover the strengths and weaknesses in their data protection management programmes.
● Identify gaps in security to decrease the risk of personal data breaches and act like a dose of preventative data protection healthcare.

Businesses involved in the audits will not be named at any stage and the results of the audits will be available only to the businesses themselves, for their benefit.

JOIC Compliance and Enforcement Manager Adrian Hayes said: “The first phase of our Data Protection Audit Programme, which took place during November last year, was extremely successful. Our office experienced positive engagement and constructive dialogue with all involved, resulting in greater awareness about the importance of data protection. The objective of our programme is to reach out to data controllers and processors at the heart of their operations. We aim to discover their needs in protecting the personal information of individuals and to identify how we can help them to comply with data protection law.

The challenging times Islanders have faced in the past 18 months due to the Covid-19 pandemic have only reinforced the importance of personal information rights and the Data Protection (Jersey) Law 2018. This second phase will continue to assist our office in developing positive working relationships with Island organisations to meet our common goal - ensuring Jersey remains a safe place to do business and store data.”