England

We need a UK GDPR compliance review - Surrey

Firms in Surrey that work on privacy compliance review matters for businesses, with 6 firms currently listed. Every firm shown is regulated by the Solicitors Regulation Authority.

Firms in Surrey

C

SRA number 574037 · Licensed body (ABS)

Offices
Surrey
Sectors
Not supplied
  • Banking and finance
  • Commercial litigation
  • Commercial property
  • Corporate law

Regulatory data last updated: 4 August 2026

H

Heald Nickinson

SRA: Authorised

SRA number 69685 · Recognised body

Offices
Surrey
Sectors
Not supplied
  • Commercial contracts
  • Commercial litigation
  • Commercial property
  • Corporate law

Regulatory data last updated: 4 August 2026

M

SRA number 830519 · Recognised body

Offices
Surrey
Sectors
Not supplied
  • Commercial contracts
  • Commercial property
  • Corporate law
  • Data protection and privacy

Regulatory data last updated: 4 August 2026

M

Morr & Co LLP

SRA: Authorised

SRA number 440504 · Recognised body

Offices
Surrey
Sectors
Not supplied
  • Commercial contracts
  • Commercial litigation
  • Commercial property
  • Corporate law

Regulatory data last updated: 4 August 2026

P

Poole Alcock LLP

SRA: Authorised

SRA number 408247 · Licensed body (ABS)

Offices
Surrey
Sectors
Not supplied
  • Commercial contracts
  • Commercial litigation
  • Commercial property
  • Corporate law

Regulatory data last updated: 4 August 2026

W

Wellers Law Group LLP

SRA: Authorised

SRA number 525515 · Recognised body

Offices
Surrey
Sectors
Not supplied
  • Banking and finance
  • Commercial property
  • Corporate law
  • Data protection and privacy

Regulatory data last updated: 4 August 2026

What this usually involves

A compliance review turns data protection from an abstract risk into a prioritised action list, which is often required by enterprise customers and insurers.

  • Reviewing privacy notices and lawful bases
  • Records of processing and retention schedules
  • Direct marketing and cookie compliance

Common questions

Do we need a data protection officer?
Only in defined cases, though many businesses appoint a responsible person voluntarily.
How often should this be repeated?
Annually, or whenever you launch a product or start a new type of processing.

Nearby towns and cities