Customer Data Privacy Compliance for a large retailer

Facilitating compliance to adherence to customer data privacy regulations to support expansion into newer markets

An esteemed American luxury home-furnishings company sought to expand its operations into Europe while ensuring strict adherence to regulatory requirements concerning the handling of personal information and customer data privacy. The organization, operating through a network of physical stores, catalogues, and digital platforms, manages a comprehensive portfolio comprising 36 outlet stores, 70 galleries (including 18 full-line design galleries and 6 dedicated to baby and child furnishings). To optimize sales processes, enhance service operations, and streamline customer data management, the client implemented Salesforce CRM as a centralized solution.
Challenge

The primary challenge centered on achieving compliance with the European Union's General Data Protection Regulation (GDPR), which necessitated the identification and encryption of personally identifiable information (PII). This compliance effort was critical to enabling the company’s strategic expansion into the EU market. The client required a solution that ensured coexistence between EU and USA-based applications while minimizing operational disruptions stemming from region-specific regulatory constraints. The project’s complexity was further compounded by dependencies on multiple concurrent initiatives. Additionally, the client sought to maintain a cohesive 360-degree view of customer data, including loyalty program information, across different instances of their system.

Solution

Accellor conducted a comprehensive assessment of the client’s Salesforce configuration to identify all fields containing PII data requiring encryption under GDPR mandates. Given the substantial volume of fields across the system, a customized analytical tool was developed to map dependencies, including business rules, reports, Salesforce AppExchange products, automations, and workflows. This process facilitated a detailed impact analysis and the identification of viable workarounds.  

Salesforce's Shield Platform encryption was selected as the optimal solution for securing customer data. The encryption strategy was tailored to prioritize fields based on their usage and operational importance. Over 30 objects, 650 fields, 900 reports, 90 business process automations, multiple integration systems, and AppExchange applications were meticulously reviewed. Approximately 78% of the identified fields were designated for encryption, with the encryption approach—deterministic or probabilistic—determined in accordance with record usage patterns and compliance requirements.

Benefit

Through the strategic implementation of Salesforce Shield Platform encryption, Accellor successfully encrypted over 500 fields without causing any disruptions to existing business operations or system integrations. The execution was meticulously planned and completed within an accelerated timeline of approximately 8 weeks, ensuring that the client was fully prepared for GDPR compliance and subsequent expansion into the European market. This initiative not only strengthened the client’s data protection framework but also reinforced their operational scalability and readiness for international growth.

500+
Encryption implementation time
8 Weeks
Encryption implementation time
78%
Assessed Fields required encryption

Contact us

Discover an effective approach to making things happen.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Discover an effective approach to making things happen.
Thank you for your message. We've received your submission and we'll get back to you shortly!
Something went wrong while submitting the form. Please make sure to enter your work email.