Meet ICO expectations with GDPR audits and data privacy consulting tailored to your unique context.
CONTACT US >>The ICO has an Accountability Tracker toolkit to help businesses achieve a defensible data protection position. This toolkit further clarifies their expectations, which are grouped into ten key themes with two additional themes added by our team reflecting ICO guidance on the Privacy and Electronic Communications Regulation (“PECR”). We apply this methodology to conduct a thorough and independent gap assessment of your data protection framework as well as a thorough GDPR data audit.


We help companies design and implement practical remediation actions. Our team will respond to the GDPR compliance audit and address any gaps in your framework.
We offer a dedicated, outsourced data protection service to provide specialist advice and guidance on request, as well as data privacy consultancy. This is available to clients as part of an annual, upfront subscription.


We develop one-off or ongoing data protection and privacy training programmes tailored to your team’s requirements, delivered by certified professionals.

Our GDPR consultants at Xcina will collaborate with your firm to deliver and achieve the following:
Independent assurance to the Board and Senior Management on the effectiveness of the data protection framework.
A rigorous GDPR compliance assessment addressing the expectations which would form the basis of an ICO audit.
A gap assessment report including a rating of any gaps, risks and issues (against ICO expectations), as well as pragmatic and proportionate recommendations to address these and achieve a defensible position against those expectations.
A realistic implementation roadmap covering relevant recommendations for improvement.
Access to expertise on a flexible and on-call basis with an outsourced DPO service, without the cost burden of in-house fully-dedicated subject matter experts.
Regular sharing of insights into relevant data protection trends and developments.
Peace of mind that your data protection frameworks have been analysed and enhanced by experienced data privacy consultants.

Many organisations undertook significant projects to prepare for the General Data Protection Regulation (GDPR) deadline of May 2018. However, since then, many have failed to embed data protection into business-as-usual activities.
Data protection frameworks have struggled to keep up with internal and external changes. Some organisations do not have specialist in-house resources; this is where expert GDPR compliance consultants can help.
The regulators’ expectations are being further clarified on an ongoing basis through additional guidance, enforcement and court cases. Recently, there has been an increasing trend for regulators to issue enforcement actions and fines in cases involving non-compliance.
Our specialists help your organisation assess your compliance against the Information Commissioner’s Office (ICO)’s expectations and deliver a remediation plan to achieve a defensible position. We also offer a Virtual Data Protection Officer (vDPO) service, a GDPR audit, and advice as required by clients who may not have the required in-house expertise.

Our consultants have many years’ experience in data security and are fully attuned to the latest developments. They provide pragmatic, value-added GDPR compliance services tailored to your specific context, not generic recommendations.
We share with you our deliverables and conduct knowledge transfer and training as required so that your team is equipped to use and maintain your data protection framework independently going forward.
Our robust methodology is aligned with the ICO’s accountability tracker as well as GDPR and legislative PECR requirements. It enables clients to benchmark themselves against the ICO’s expectations and to achieve a defensible position in terms of data protection compliance.
Our vDPO service is a highly cost-effective solution for obtaining access to subject matter expertise and advice upon request.
Lindsey and his team provided pragmatic approaches to help our company to be compliant with our evolution of GDPR offering to our Clients and move us to the next phase of our privacy maturity journey. Their knowledge of the subject area and other domains is amazing. Definitely would work with them in the future.
Peter Kovacs, Information Security Specialist, nudge
Read how our risk management consulting, auditing and assurance services are helping organisations like yours meet their objectives with increased confidence.
Receive regular updates from our expert consultants as they provide clarification and guidance on issues impacting your organisation.
Subscribe >>