IAPP UK Intensive 2026: Privacy | AI governance | Cybersecurity law
LONDON
23-26 February
Assessing the Maturity and Effectiveness of Data Privacy Programs
Wednesday, 25 Feb.
14:15 - 15:15 GMT
Advanced level
Many data privacy programs have foundations that pre-date GDPR. Their evolution is an ongoing challenge, not just to meet the expectations of GDPR and ePrivacy laws, but to keep abreast of new and amended global regulatory risks and requirements. Policies, processes and guidelines will be layered in to reflect new developments within the business and outside world. AI now adds further challenges to the effectiveness of the program. For multinationals where inherent data privacy risks and tolerances may vary considerably, the situation can be even more challenging. Many companies are now considering how they should assess the maturity and effectiveness of their global data privacy program. How are its requirements adhered to in practice? How should the program evolve according to risk? Where should scarce resources be allocated? This session will explore these questions based on the practical experience of an ex-regulator, a CPO and DPO and consultants.
What you will learn:
- Practical steps on how to approach a global data privacy maturity and effectiveness assessment program.
- Tips on how to calibrate an assessment process based on varying global risk profiles.
- Insight into designing and implementing a repeatable assessment process
Moderator and speakers

Steve Wood
Special Advisor, Allen & Overy; Director
PrivacyX Consulting

Fedelma Good
Managing Director
Best Practice Privacy

Teena Lee
CIPP/US
Senior Vice President, Associate General Counsel and Chief Privacy Officer
News Corporation