Take advantage of Necando's expertise to comply with Act 25
To comply with Act 25, this retail business implemented a privacy framework to protect data, simplify compliance, train employees, and strengthen customer trust.
The ask
Comply with the legal requirements of Law 25 to avoid fines and maintain customer trust.
Protect the personal data of customers and employees, including data collected in-store and on the e-commerce website.
Develop an organizational culture focused on privacy protection.
Simplify the management of consents, data access requests, and incident reporting.
The answer
Initial Analysis
Conduct an assessment of current data management practices to identify gaps.
Action Plan
Develop a structured, phased plan (prioritization, implementation, monitoring).
Awareness
Train managers and employees on Law 25 and their respective responsibilities.
Project Management
Appoint a Privacy Officer (RPRP) to coordinate compliance efforts.
The solution
Processes
Creation of a registry for personal information and privacy incidents.
Implementation of a clear process to quickly respond to customer requests regarding their data.
Training
Tailored workshops for employees to help them identify and report privacy-related risks.
Practical guides on managing personal data for managers.
Documentation
Drafting of internal policies and development of tools that comply with Law 25, making them easily understandable for all employees.
The results
Legal Compliance:
Compliance achieved before September 2023, with policies validated by a data protection expert.
Enhanced Security:
Reduced risk of privacy incidents thanks to appropriate tools and increased employee awareness.
Customer Trust:
Increased customer satisfaction, reflected in a rise in positive online reviews.