5 signs you have lost control of your data
You rarely lose control of your data in one go. It creeps up: a stray export here, a registration without an owner there, a report no one quite trusts. Until the moment a data breach, a privacy request or an audit mercilessly shows that no one has an overview any more. Do you recognise one or more of these five signs? Then data governance is probably your biggest silent risk.
- No one owns it — 'who is in charge of this?' gets a shrug.
- On a privacy request or incident, you cannot quickly find which data sits where.
- Shadow data (stray spreadsheets, exports, copies) grows unnoticed outside your view.
- You do not quite trust your own figures — quality (complete, correct, current) is not safeguarded.
- People keep the data correct by hand — expensive, error-prone, and a sign of missing governance.
1. No one owns it
Ask the question "who exactly is in charge of this data?" and watch the reaction. If you get a shrug, or a reflexive pointer to IT, you have the first sign. Without a data owner who decides on quality, access and use, no one is accountable — and the data rots by itself. Ownership is not an IT role, but belongs to someone from the process who feels the consequences of errors.
2. On a request, you do not know where the data is
A citizen asks for access to or erasure of their data. Or there is an incident and you must report within 72 hours. If it then takes your organisation days of searching to find which data sits where, you are missing the overview a simple data register would give — and you run a compliance risk at the same time, because you cannot account for your processing.
3. Shadow data grows unnoticed
Spreadsheets on a network drive, exports in mailboxes, copies made "just in case". This shadow data lives outside your systems and outside your view. As long as things go well, it goes unnoticed — but it is exactly where things go wrong the moment someone asks about it or it leaks. Every uncontrolled copy is a risk you do not know about and therefore do not manage.
4. You do not quite trust your own figures
Two reports, two different numbers — and the meeting then turns into a debate about which number is right, instead of about the substance. If you recognise that, the quality of your data is not safeguarded on the three points that count: completeness, correctness and currency. And every dashboard or AI model you build on it inherits that doubt — a model is never better than the data beneath it.
5. People keep the data correct by hand
Staff who, day in and day out, retype mutations, work through the message traffic from national facilities or reconcile differences between systems. That manual work is not only expensive, it is also error-prone — and a sign that the data flows are not governed but survived. Where people are structurally the glue between systems, governance is missing.
Recognisable? Here is how to take it back
Do you recognise more than one sign? Then the good news is: you do not have to set up a large programme to turn this around. Data governance starts small — with one core registration, an owner, clear quality agreements and a simple register. From there it grows, by asking the same question of every new registration and every dashboard: whose data is this, is it correct, and is this allowed?
What that approach looks like exactly — from ownership and classification to the rights of individuals and the role of the Privacy Officer and CISO — is set out in our knowledge hub on data governance. Want to know first where your organisation stands? Take our free maturity scan, or get in touch for a short exploration. Then we will look together at where you can take back control fastest.
Frequently asked questions
What are signs you have lost control of your data?
Among others: no one owns a data set, on a request you cannot quickly find where data sits, shadow data grows unnoticed, you don't trust your own figures, and people keep the data correct by hand.
What is shadow data?
Stray spreadsheets, exports and copies that live outside your systems and outside your view. It goes unnoticed while things go well, but it is exactly where things go wrong the moment someone asks about it or it leaks.
Why is a data owner important?
Without an identifiable owner, no one is accountable for quality, access and use, and data rots by itself. Ownership belongs to someone from the process who feels the consequences of errors, not to IT.
Why don't I trust my own figures?
Usually because data quality is not safeguarded on completeness, correctness and currency. Two reports with different numbers are a sign that governance is missing — and every dashboard or AI model inherits that doubt.
How do you take back control of your data?
Start small: pick one core registration, appoint an owner, record quality agreements and put it in a simple register. Then ask the same question of every new registration: whose data is this, is it correct, and is this allowed?
Control over your data — together
Take the free data governance scan, or let us take a no-obligation look at where you can take back control fastest.