- Contain the incident and prevent further loss or access.
- Preserve emails, logs, files and other evidence.
- Record when and how the incident was discovered.
- Identify the systems, people and personal data involved.
- Escalate it immediately to the person responsible for data protection.
Urgent data breach support
Just had a data breach?
Not sure what to do next, who to contact or whether it needs to be reported? We can help you contain the incident, assess the risk and make the right decisions quickly.
You will speak directly to an experienced data protection specialist—not a call centre.
The first response
Act quickly—but do not panic
The early decisions protect people, preserve evidence and keep your regulatory options open. You do not need every fact before asking for help.
- Deleting evidence or making unnecessary system changes.
- Assuming every security incident is automatically reportable.
- Contacting everyone affected before assessing the risk and protective steps required.
- Waiting for a complete technical investigation before starting the data protection assessment.
- Allowing the 72-hour window to pass without a documented decision.
How LAUDIS helps
A controlled response from first call to closure
We help you establish the facts, assess the risk to individuals and create a defensible record of the decisions made.
Immediate triage
Clarify what has happened, what is still happening and the containment steps that cannot wait.
Risk assessment
Assess the nature of the data, people affected, likely consequences and safeguards already in place.
Notification decisions
Determine whether the ICO, affected individuals, clients, insurers or other bodies need to be informed—and prepare the communications.
Evidence and recovery
Document the breach, decisions and actions, then turn the lessons learned into practical improvements.
LAUDIS + RightCue
Data protection and technical response, working together
A personal data breach may require both a regulatory response and specialist technical investigation. Where information-security expertise is needed, LAUDIS works with RightCue so the legal, operational and technical strands support one coherent response.
Privacy and regulatory response
- UK GDPR breach assessment
- ICO and individual notification decisions
- Client, insurer and stakeholder communications
- Breach records and accountability evidence
- Policies, procedures and staff learning
Technical and information security
- Technical containment and investigation support
- Identification of security weaknesses
- Security remediation and control improvement
- Technical assurance and risk management
- Measures designed to reduce recurrence
The work should not end when the immediate incident is closed. We can help identify the root cause, strengthen technical and organisational controls, update procedures, improve staff awareness and test whether the response plan will work better next time.
Reporting decisions
Not every breach needs to be reported
The decision depends on the likely risk to people—not simply the size of the incident or how embarrassing it feels.
The facts, effects, assessment and remedial action should be documented even where no notification is required.
If the breach is likely to result in a risk to individuals’ rights and freedoms, the ICO must normally be notified within the 72-hour period.
Where there is a high risk, affected individuals must be informed without undue delay and given useful advice about protecting themselves.
Need help now?
Start with what has happened
You do not need a finished investigation or certainty about whether the breach is reportable. Tell us what you know and we will help identify the immediate priorities.