• Has GDPR made a difference and what benefits have you experienced from achieving compliance?• What challenges have you encountered along the way like third party governance, or identification mechanisms?• What are your recommendations for organisations that remain non-compliant to this day, to create an enduring compliant cybersecurity strategy and finally get over the finish line?