Skip to content

Menu
  • About
    • Why iCompli?
  • Services
    • SSPA – Microsoft Supplier Security & Privacy Assurance Program
    • The Data Protection Officer
    • Advice and Consultancy
    • Training and Awareness
    • Managed Video Redaction Service (MVRS)
    • Keynote, Speaker, Panellist
  • Contact Us
    • Contact Us
  • Blog
    • Blog
  • Legal
    • Privacy Notice

Category: Uncategorized

Uncategorized / DPO / Fines, penalties and breaches / GDPR

Being Hacked Isn’t a Defence: What Capita’s 2025 £14m Fine Tells Us About GDPR Security Compliance

When Capita suffered a ransomware attack in March 2023, exposing the personal data of 6.6 million people, the outsourcing giant tried every defence in the book. They argued they were …

Uncategorized

GDPR for Marketing Practitioners online course

Hosted by The Chartered Institute of Marketing (CIM) and delivered by the Head of iCompli, this is an essential course for anyone working in marketing. GDPR requires a focus on …

Uncategorized

New iCompli SSPA assessment ‘portal’

Making SSPA assessments easier We understand that external audits are not ‘relished’ by everyone. There can be a lot of time and effort to identify relevant evidence to support your …

Uncategorized

How to ace your external Microsoft SSPA assessment

SSPA assessment key to success Have you been asked to independently verify your SSPA compliance? Are you a small, agile company that does not really have a lot of documented …

Uncategorized

Remote SSPA assessment challenges tackled

Whilst COVID-19 means we may be working from home, the need to manage the Microsoft supply chain has not changed. Our clients are still being challenged with meeting the compliance …

Uncategorized

Microsoft’s SSPA and DPR Explained

You may well have landed here as a result of receiving a notification from Microsoft that you are ‘in the Supplier Security and Privacy Assurance (SSPA) Programme! What does it …

SSPA / Uncategorized

Supplier Security & Privacy Assurance (SSPA) Program Guide: Understanding the new Section K requirements

The longer read The new version 10 DPRs introduces Section K, with requirements focused on the concept of ‘AI Systems’. What is an ‘AI System’? Microsoft defines this as. An …

Uncategorized

Microsoft SSPA DPRs version 10 coming! What you need to know.

SSPA Version 10 Microsoft continues to update its data protection requirements (DPRs) for its Supplier Security & Privacy Assurance program (SSPA), to keep pace with technical and legal challenges. It …

Uncategorized

SSPA DPRs version 9. What you need to know.

Overview Microsoft has updated its data protection requirements (DPRs) for its Supplier Security & Privacy Assurance program (SSPA). . Whilst thirty-nine of the previous fifty version 8 DPRs remain unchanged, …

Uncategorized

Data Protection Brexit Planning

The UK triggered Article 50 of the Treaty of the European Union on 29 March 2017 and has two years to negotiate a Withdrawal Agreement and framework for a future …

Posts navigation

Older posts

Recent Posts

  • Redaction of CCTV footage for Subject Access Requests: feel the pain?
  • Being Hacked Isn’t a Defence: What Capita’s 2025 £14m Fine Tells Us About GDPR Security Compliance
  • Cookie Compliance Crackdown: Why Regulators Are Hitting Sites for Cookie Banner Abuse in 2025
  • ICO’s £3.1M Fine: What Controllers Must Learn Now
  • Microsoft’s SSPA and DPR Explained

Archives

  • February 2026
  • January 2026
  • December 2025
  • January 2025
  • May 2024
  • December 2023
  • September 2019
  • July 2019

Categories

  • DPO
  • ePrivacy
  • Fines, penalties and breaches
  • GDPR
  • Privacy-led marketing
  • Redaction
  • SSPA
  • Uncategorized

A long road ahead, but promising?

[image or embed]

— Duncan Smith (@icompli.bsky.social) 6 March 2025 at 08:20
  • Bluesky
  • LinkedIn

COMPLIANCE
Privacy
Legal

iCompli Ltd © 2026