Dbyt Readiness Self-Check
This short self-check helps organizations identify whether their data protection governance and incident readiness may require closer review.
It is intended as an initial guide only. A proper Dbyt review would consider the organization’s actual processes, records, systems, vendors, responsibilities, and incident readiness arrangements.
Please answer each question honestly based on the organization’s current position.
Self-Check Questions
For each question, consider whether the answer is Yes, Partially, No, or Not sure.
1. Does your organization have a clearly identified person or team responsible for data protection matters?
2. Does your organization maintain a current record of the main types of personal data it collects, uses, stores, or shares?
3. Are staff given clear guidance on how personal data should be handled in daily work?
4. Are third-party vendors or service providers who handle personal data reviewed or documented?
5. Does your organization have a documented process for handling a data incident or suspected breach?
6. Is there a clear internal escalation route when a data protection issue arises?
7. Are data protection risks, incidents, or unresolved issues reported to management?
8. Are follow-up actions assigned to specific owners and tracked to closure?
9. Does your organization use AI, automation, analytics, external platforms, or shared systems that involve personal data?
10. Has your organization reviewed its data protection or incident readiness arrangements in the last 12 months?
Quick Self-Check Scoring
For a quick indication, assign concern points to your answers as follows:
- Yes = 0 concern point
- Partially = 1 concern point
- No = 2 concern points
- Not sure = 2 concern points
Add up the concern points across the 10 questions.
- 0 to 5 points: Foundational readiness
- 6 to 12 points: Developing readiness concerns
- 13 to 20 points: Exposed readiness concerns
The score is only a first indication. It should not be treated as a formal audit, legal opinion, or compliance conclusion.
How to Read Your Result
This first version of the self-check is intended to help you identify broad readiness concerns before a guided Dbyt intake or deeper review.
Mostly Yes: Your organization may have a foundational level of readiness, but the arrangements should still be checked for documentation, consistency, and practical use.
Several Partially, No, or Not sure responses: Your organization may have developing or exposed areas that require clearer ownership, documentation, escalation, management visibility, or follow-up tracking.
Important: This self-check is only an initial guide. A proper Dbyt review would consider the organization’s actual processes, records, vendors, systems, responsibilities, and incident readiness arrangements.
Next Step
The self-check is only an initial indication. Where the result suggests uncertainty, developing readiness concerns, or exposed areas, a guided Dbyt intake may help identify the practical gaps, responsible owners, records needed, and follow-up actions.
Arrange a confidential discussion
Alternatively, return to the main Dbyt page to review the framework and engagement options.