powering productive workplaces
Front page
NewsUC&C11 Aug 2017 · 2 min read

Think You're Compliant with GDPR? The Research Says Otherwise

According to new research from Veritas, only 2% of companies are currently GDPR compliant, outlining a serious misunderstanding in regulation readiness.

GDPR compliance research findings

According to the latest data from Veritas research, organisations throughout the world may be mistaken when they claim to be in compliance with the upcoming GDPR (General Data Protection

Regulations). The GDPR report for 2017 revealed by Veritas claims that about one third of all respondents consider their enterprise to be GDPR ready, according to the key requirements of the regulations. However, when asked about specific provisions for GDPR, most of the same respondents were unable to offer answers that support their compliance.

Once inspected, only two percent of the companies surveyed seemed to actually be in compliance with GDPR. That means that today's companies aren't just drastically unprepared, they also don't completely understand what regulation readiness looks like.

Are You Really Ready for GDPR?

The latest results are worrying, particularly when you consider the fact that the GDPR is less than a year away; coming into force 25th May 2018. Organisations around the world should be focused on the impact that non-compliance with information standards could have with their business and brand loyalty.

The Veritas study indicates that 48% of companies who claimed to be compliant don't have total visibility over their personal data loss incidents. On top of that, 61% of that same group admitted that their organisation struggle to identify and report data breaches within 72 hours of awareness. This is a mandatory requirement for GDPR when there is a risk to data subjects.

Any organisation that can't report the theft or loss of personal data, such as email addresses, medical records, or passports to supervisory bodies within the correct deadline could be breaking key requirements. This means that they would be susceptible to the huge GDPR fines of either 20 million in euros, or four percent of their annual turnover.

Better Knowledge is Needed

The results suggest that more education is required on the processes, tools and policies of GDPR, to support information governance strategies required for compliance with GDPR requirements. Creating classification-based, automated, and policy-driven approaches to GDPR is essential to success, and should enable organisations to accelerate their ability to meet with the regulatory demands set out, before the impending deadline.

 

rate this story
helps rank stories across uc today
The discussion0 takes · attributed & checked

Does this reflect your experience?

opening the room…
Read nextordered by techtelligence · every pick explained
same beat · UC&C

GoTo CX Complete: Is GoTo Building the SMB AI-Powered UC+CC Layer Before Rivals Catch Up?

13 Aug 2026
matches this topicDo Smart Glasses Need Tougher Privacy Safeguards?12 Aug 2026matches this topicAI Governance Is Already Reshaping Enterprise Communications Compliance11 Aug 2026