filmindustryjobs.co.uk – Data Breach Procedure
Required under UK GDPR Article 33–34.
1. Identification
Breaches can include:
-
Unauthorised access
-
Data leaks
-
Accidental deletion
-
Malware attacks
2. Containment
Immediate actions:
-
Block access
-
Reset credentials
-
Isolate servers if needed
3. Assessment
We determine:
-
Type of data affected
-
Number of users impacted
-
Level of risk
-
Whether notification is required
4. Notification
If required, we will notify:
-
Supervisory authority within 72 hours
-
Affected users without undue delay
5. Documentation
All breaches are logged in an internal incident register.
