Customer Data Protection within Supply Chain
Challenge: At ASOS, I addressed a customer privacy concern within the supply chain. Warehouse staff accessed customer PII data (like names and addresses) stored in the warehouse management system. This raised compliance risks with privacy regulations (GDPR and CCPA) as access should be limited.
Solution: I spearheaded a project to enhance customer data control. We implemented a tiered access policy:
Warehouse Staff: Access limited to essential data for order fulfillment (e.g., no PII).
Carriers: Granted access to PII data only for delivery purposes.
Customer Service: Provided a secure, encrypted UI within the ASOS Carrier Management System to access and modify PII data if needed for customer support.
Impact: This solution prioritized both customer privacy and company security by minimizing PII exposure. This mitigated potential regulatory risks of data breaches with fines exceeding £20 million.