About a-team Marketing Services
The knowledge platform for the financial technology industry
The knowledge platform for the financial technology industry

A-Team Insight Blogs

Pontus Vision Offers Open Source GDPR Solution with GCHQ Style Security

Subscribe to our newsletter

If you are still looking for a General Data Protection Regulation (GDPR) compliance solution, London based regtech Pontus Vision may be able to help you with its open source, secure software that allows firms to search for any given customer and quickly access all of the data the business holds about them in a single consolidated view, without changing underlying systems.

Pontus Vision started up in London in 2011 with a focus on low-latency front office applications. With support from an innovation lab it sold solutions to a number of financial institutions and was asked by UK government to support an open source big data project. This morphed into a wider government remit using similar architecture for a performance tool.

Based on this architecture, the company has developed a commercial open source GDPR solution that uses Apache software and includes GCHQ level security. Financial firms can use the solution to streamline and automate data management processes without changing underlying systems or procedures.

Leonardo Martins, founder of Pontus Vision, says: “We have designed Pontus Vision GDPR to enable financial services firms challenged with historical data management issues to quickly and efficiently meet GDPR requirements.”

He describes the GDPR solution as having three steps, extract, track and comply. Extract requires liaison with IT teams to tap into various data sources; track includes data storage and is based on a Janusgraph database that enables powerful and fast queries to see, for example, if a person has given consent to the use of particular data; comply uses a scoring mechanism to assess a firm’s compliance against each of the 12 steps in the Information Commissioner’s Office’s guide to GDPR. A weighted average across all 12 scores allows a data protection officer to see on one page how compliant the firm is, while the graph database can, for example, provide detail on which machines and tools are impacted by a data breach.

As a small company, Pontus Vision is working with partners to deliver its GDPR solution to market. The business model allows the GDPR software to be downloaded at no charge with users paying a yearly support and consultancy fee.

Subscribe to our newsletter

Related content

WEBINAR

Recorded Webinar: Sponsored by FundGuard: NAV Resilience Under DORA, A Year of Lessons Learned

The EU’s Digital Operational Resilience Act (DORA) came into force a year ago, and is reshaping how asset managers, asset owners and fund service providers think about operational risk. While DORA’s focus is squarely on ICT resilience and third-party dependencies, its implications extend deep into core operational processes that are critical to market integrity, investor...

BLOG

UK Equity Consolidated Tape and EU MiFIR – Two Data Regimes, One Control Problem

The UK’s proposed equity consolidated tape is framed as a response to long-standing fragmentation in equity market data. By aggregating post-trade information and an attributed best bid and offer across trading venues, the tape is intended to provide a single, standardised view of UK equity trading. At the same time, transaction reporting under the Markets...

EVENT

ExchangeTech Summit London

A-Team Group, organisers of the TradingTech Summits, are pleased to announce the inaugural ExchangeTech Summit London on May 14th 2026. This dedicated forum brings together operators of exchanges, alternative execution venues and digital asset platforms with the ecosystem of vendors driving the future of matching engines, surveillance and market access.

GUIDE

Putting the LEI into Practice

Hundreds of thousands of pre-Legal Entity Identifiers (LEIs) have been issued by pre-Local Operating Units (LOUs) in the Global LEI System (GLEIS), and the standard entity identifier has been mandated for use by regulators in both the US and Europe. As more pre-LEIs are issued ahead of the establishment of the global systems’ Central Operating...