Partly Cloudy

Partly Cloudy

max temp: 20°C

min temp: 11°C

Norfolk Business Awards 2018

Hadleigh-based web development firm Free Rein issues warning over progress towards GDPR compliance

PUBLISHED: 17:35 17 October 2017 | UPDATED: 17:36 17 October 2017

New regulations on data protection
 come into effect next May.
Picture: Sonya Duncan

New regulations on data protection come into effect next May. Picture: Sonya Duncan


Businesses are making little progress in improving online security ahead of new data protection rules coming into effect next year, according to a Suffolk web development and digital marketing firm.

Andrew Johnson of Free Rein.
Picture: Free ReinAndrew Johnson of Free Rein. Picture: Free Rein

And the lack of urgency shown so far is about to become clearer, says Andrew Johnson of Hadleigh-based Free Rein, with the widely-used Google Chrome browser starting to flag relevant pages as “Not Secure”.

The General Data Protection Regulation (GDPR), which comes into force on May 25, 2018, imposes new requirements for the corporate storage and processing of personal information, with breaches potentially resulting in fines of up to 4% of turnover or 20m euros, which ever is greater.

Free Rein began been conducting passive testing of websites since June this year, since when the proportion of UK sites found not to be secure has barely changed from around 70%.

Mr Johnson says part of the problem is that many website owners wrongly believe that SSL encryption certification is only required for transactional websites when, in fact, it is needed for any site with fill-in forms.

As of today, he adds, Google Chrome is due to start highlighting uncertificated pages that can be filled in as “Not Secure” in the address bar.

“Another misconception is that ‘only the contact page is not secure’. This is also not true,” says Mr Johnson. “You cannot have an insecure contact form and the rest of the website secure, because a contact form becomes secure by having valid SSL certification for the website.”

More than one third of problem sites are not secure solely due to invalid SSL certification, often because the certificate is in the wrong name, he says.

Other security issues can include username and login name visibility, user enumeration (where attackers are able to see usernames and logins by performing scans), the use of blacklisted IP addresses and vulnerability to “Poodle” attacks (where a server complies with a rogue request to downgrade its security protocols).

“In summary, it is now the time to secure your website by getting it locked down,” adds Mr Johnson. “It could be a challenging time for many businesses if their potential clients are deterred from submitting enquiries due to forms on the website stating: ‘Not Secure’.”

Search hundreds of local jobs at Jobs24

Coastal areas of Suffolk and Essex could be hit by 55mph winds when Storm Bronagh hits, according to Met Office and Weatherquest forecasters.

An woman in her 70s has been taken to hospital in a critical condition following a serious road traffic incident in Felixstowe.

Highways England remain “positive” that the Orwell Bridge will remain open tonight – but weather conditions are being closely monitored as Suffolk braces for high winds.

Bear Grylls is seeking adventure hungry contestants for the latest series of The Island.

Suffolk’s global superstar Ed Sheeran will be returning to his home county next summer for two huge concerts.

Ed Sheeran’s return to his home county will conclude a bumper European tour with 23 shows across 15 countries.

Hope Church has bought the former Odeon Cinema in Ipswich which has been left empty for the past 13 years.

Three fire crews and an air ambulance attended a high-rise building in Ipswich after a person was taken ill in a fifth floor flat.

A charity auction featuring 300 personal items belonging to Suffolk superstar Ed Sheeran will be held in his home county – and it’s open to everybody.

Suffolk has always played an important part in the life of Ed Sheeran.

Show Job Lists

Most read

Topic pages

Newsletter Sign Up

Ipswich Star daily newsletter
Sign up to receive our regular email newsletter

Our Privacy Policy

MyDate24 MyPhotos24