GDPA RATING SYSTEM

GDPA Registration & Induction

To obtain your first star Register with GDPA and have all your staff watch the Privacy Induction Video.

View progress of the inductees via the GROUP INSIGHTS & STATISTICS tab located in the OPTIONS menu.

GDPA will run an email integrity test using the email you have signed up with and provide you with a report of any data breaches that have occurred in the last 10 years, relating to that email. Any subsequent email integrity tests can be performed at a charge of $9 per email address.


Policy, DSAR & Trust Seal

To obtain your second star complete the POLICY Audit. This is located on your MAIN DASHBOARD which you will be automatically directed to after login.

The audit requires you to either choose to submit your own policy that you wish to continue to use or you can choose to use our GDPA privacy compliant master policy. All members will receive a link and QR code to attach to all their digital assets.

GDPA’s master compliance policy includes 16 bespoke policies.

Data Subject Requests

Within 48 hours of submitting your policy audit you will also receive a gateway that allows individuals to submit requests concerning their rights under the laws of the GDPR and other global privacy regulations. All members will receive a link and QR code to attach to all their digital assets.

GDPA Trust Seal

Within 48 hours of submitting your policy audit you will also receive your GDPA Trust Seal via email. Attach your seal to your digital assets to show your commitment to global Data & Privacy compliance.

You will also receive…

European Union GDPR Representation

In accordance with Article 27 of the GDPR, many companies outside of the EU are required to nominate a GDPR representative in the EU. When you register with GDPA you will have easy access to our representatives, avoiding the need for you to establish a physical presence in the EU. Your representative acts on your behalf in relation to personal data processing activities and acts as a local contact for data subjects and supervisory Authorities.

European Union Business Address & Phone Number

When you register with GDPA you will receive a registered business & mailing address based within the EU, in accordance with Article 27 of the GDPR, avoiding the need for you to establish a physical presence in the EU. You will also receive a registered phone number based within the EU, in accordance with Article 27 of the GDPR.

Your organisation can now benefit from its demonstrated commitment to privacy and data protection compliance and continue to build brand equity with all its stakeholders.


Primary Audits

To obtain your third star complete all remaining mapping audits and primary audits, located in the audits tab on the main menu.

All members must complete a personal audit. Nominate the appropriate person to complete the company, third party, project and human resources audits.


Organisational Audits & Training

To obtain your fourth star complete all the Organisational Audits that are relevant to your organisation and train at least one member as a General Data Protection Practitioner or Data Protection Officer. Train all your staff if you want to achieve best practice. GDPA online training courses can be accessed from the Options Tab or Service Centre Tab in the main menu.

When an organisation fails to meet compliance standards and regulations, increased costs come in the form of issues such as business disruption, productivity losses, revenue losses and fines, penalties, and settlement costs.

When implementing best practice, you reduce the total compliance costs for an organisation. The 12 best practices incorporate:

  1. Centralised governance
  2. Daily compliance audits
  3. Corporate training programs
  4. In-house compliance officer
  5. Integration with security and privacy functions
  6. Incident response processes
  7. Integrating compliance technologies
  8. Senior management reporting and monitoring capabilities
  9. Regulatory monitoring
  10. Program certification
  11. Compliance charter
  12. Annual organisational audits

Your organisation can now benefit from its demonstrated commitment to privacy and data protection compliance and continue to build brand equity with all its stakeholders.


Independent Full Audit

To obtain your fifth star conduct an independent organisational full audit annually. You can use GDPA’s independent audit service (virtual or onsite) located in the Service Centre on the main menu, or submit a verified independent organisational audit from a credible privacy & data protection service provider. Your organisation can now benefit from its demonstrated commitment to privacy and data protection compliance and continue to build brand equity with all its stakeholders.


5 Star PLATINUM Rating

To achieve a 5 Star Platinum rating, organisations need to demonstrate excellence over time. Maintaining your membership and 5-star rating for 2 consecutive years (24 months) qualifies you as a 5–Star platinum organisation.

Your organisation can now benefit from its demonstrated commitment to privacy and data protection compliance and continue to build brand equity with all its stakeholders.


5 Star DIAMOND Rating

To achieve a 5-star Diamond rating, organisations need to demonstrate commitment & excellence to privacy and data protection compliance over a sustained period. Maintaining your membership and 5-star platinum rating for 2 consecutive years (24 months) qualifies you as a 5- star Diamond organisation.

Your organisation can now benefit from its demonstrated commitment to privacy and data protection compliance and continue to build brand equity with all its stakeholders.

Maintaining compliance consistency over time embeds long term trust between you and the public, resulting in increased engagement and revenue.