Over half of firms still not GDPR compliant
Over half of financial and accounting firms have not taken any precautions to become GDPR compliant, despite the regulation coming into force 18 months ago, according to a survey from document management firm Invu.

Despite 81% of employees saying GDPR had made their business more aware of the risks of security and the need for stricter privacy regulations, 57% of firms have chosen not to introduce any new procedures or policies to increase security.
8% also claimed their business had carried on as if GDPR hadn’t come into force and paid no attention to any new privacy or security policies they might need to implement.
Small businesses in particular appear to be running a risk with GDPR compliance with just 29% having introduced new policies for data handling – despite 60% admitting to being more aware and concerned of the risks.
Ian Smith, general manager and finance director at Invu, said: “The scale of penalties issued by the ICO in recent months should have helped focus the attention of UK business leaders on this issue. You only need to consider the record £183.39 million penalty issued to British Airways for data security failures under GDPR.
“This just shows that GDPR fines are a real threat to those businesses not doing enough to protect personal data. I would have expected many more businesses to have taken at least some precautions by now- but this data suggests many have not.”
Breaking news
Direct to your inbox:
More
stories
you'll love:
This week's biggest stories:
This week's biggest stories:
Buy-to-let
The Mortgage Works launches sub-3% buy-to-let rates

Tax
HMRC rule change set to impact millions of landlords and sole traders

HSBC
HSBC launches over two dozen sub-4% mortgage rates

Bank Of England
Bank of England cuts interest rates by 0.25%Â in three-way vote

April Mortgages
April Mortgages launches 7x loan-to-income lending

Pension
Government announces plans to consolidate small pension pots
