Creative Privacy

I help all kinds of organisations with data protection compliance, and I specialise in helping small organisations.

Many start-ups, charities, non-profits and volunteer organisations tend to have either no governance in place, or very little. I help them set up their governance from nothing or review what they have and help them fill the gaps.

Small organisations need a governance framework that meets compliance requirements, but that is also manageable and tailored to their size and resources.

Set up governance

Review and advise

Compliance advice

Ongoing support

I can help you create a governance framework that works for your limited resources and is easy to manage.

I can review your privacy governance arrangements and advise on any gaps or improvements. Or you may just need review and advice on privacy notices, policies and processes or similar.

I can help with all kinds of projects, general questions, applying the law to new technologies and so on.

I can provide ongoing support to be your go to for data protection expertise and questions.

Help!

If you don't know what you might need or even where to start, I can advise what your organisation needs and help you get there.

Qualifications and experience

  • Over 20 years' experience of privacy and data protection.

  • Seven years at the Information Commissioner's Office (ICO) leading the international team.

  • Four years as an in-house DPO at a multinational data-driven organisation.

  • Four and a half years as the in-house DPO at a biometric identity technology SME.

  • Consultant since 2021, working with a range of organisations across sectors to help them set up, review or improve their data protection governance.

  • Knowledge and experience of UK, EU and international data protection and privacy law.

  • Strong leadership and policy development skills.

  • LLM Information Rights Law and Practice (2014).

  • ISEB certificate in data protection (2007).

  • CIPP/E (2014); CIPP/M (2016); IAPP Fellow in Information Privacy (FIP)(2016) - note, I am no longer an IAPP member.

  • ​Previously an IAPP EU Advisory Board member and IAPP London KnowledgeNet co-chair.

  • Was a committee member on the BS10012 Standards Panel (update of the data privacy standard to reflect GDPR).

  • Represented the ICO at the Article 29 Working Party (now EDPB).

  • Trainer on the ICO in-house ISEB data protection course.