— SERVICES • DATA PROTECTION COMPLIANCE

Nigeria Data Protection Act
Annual Audit

— Regulatory Background

The Act

The Nigeria Data Protection Regulation (NDPR), introduced by NITDA in January 2019, laid the foundation for data protection practices in Nigeria, requiring organisations to conduct annual audits and ensure compliance. Recognising the need for a more focused regulatory approach, the Nigeria Data Protection Bureau (NDPB) was established in 2021 to oversee enforcement and drive accountability in data governance.

Risk

Fines

Significant financial penalties from the supervisory authority, the NDPC.

Risk

Fines

Significant financial penalties from the supervisory authority, the NDPC.

Risk

Fines

Significant financial penalties from the supervisory authority, the NDPC.

This progression — from NITDA, to NDPB, to the Nigeria Data Protection Commission (NDPC) — underscores Nigeria’s commitment to protecting personal data and aligning with global standards in the digital economy.

We are a licensed Data Protection Compliance Organisation (DPCO) that thrives by helping organisations identify and mitigate their data protection and privacy compliance risks and challenges, alongside their information security and cybersecurity threats and vulnerabilities.

Our dedicated and professional team specialises in solving complex compliance issues, creating bespoke and flexible business solutions for a variety of clients across different industries.

— How We Work

Audit Process

The audit process includes a set of detailed remediation activities delivered using industry best-practice data protection principles and guidelines. We are well versed in dealing with clients of various sizes, and have consistently supported the remediation efforts required to meet obligations to the NDPC.

Non-compliance with the Act can cause irremediable damage to your business.

Risk

Fines

Significant financial penalties from the supervisory authority, the NDPC.

Risk

Breach of Trust

Breach of trust with your invaluable clients and customers.

Risk

Reputational Damage

To your business — lawsuits, loss of earnings, and penalties.

Risk

Loss

Loss of customers and employee attrition.

— Delivery Approach

Bridging the gap between your needs and results.

Our 3-step compliance approach leverages proven methods, international best practices, robust tools, and a comprehensive suite of assets — from reference processes to automation — to deliver an innovative solution. Our execution incorporates proven methodologies, extremely qualified personnel, and a highly responsive approach to managing deliverables.

— NDPR Compliance Deliverables

From training to a filed audit report.

§ 1

Training & Awareness

Provide NDPA training and awareness across your organisation.

§ 2

Policy Review

Review and update your privacy policy.

§ 3

Risk Assessment

Conduct the NDPA risk assessment (audit).

§ 4

Audit Report

Receive a documented NDPA audit report.

§ 5

Summary Filing

File the NDPA audit summary report.

— Benefits

What you gain once the audit is complete

Organisations derive several useful benefits once the NDPA Compliance Audit and remedial activities are completed. These include, but are not limited to, the following: