Principal Records Management Officer
CurrentOver the last 4 years, I have been working towards the successful implementation of the General Data Protection Regulations (GDPR) across the Council whilst remaining responsible for the operation of our Corporate Records Unit and leading records management. As part of the GDPR program, I successfully led the creation of the Council's Records of Processing Activities (RoPA) reviewing and documenting 600+ business processes. This has involved creating and running workshops, and training sessions focused on educating staff about GDPR whilst providing teams with practical ways of assessing business processes in light of these changes.In addition to communicating changes in the law, I needed to use soft skills to persuade, negotiate and empathize with staff as they carry out business process reviews towards achieving compliance. This has extended beyond business process reviews to include assessing and updating in-house and procured ICT systems in terms of how they comply with GDPR requirements.