Home Data-Driven Thinking When Selecting A CDP, Marketers Must Keep Privacy In Mind

When Selecting A CDP, Marketers Must Keep Privacy In Mind

SHARE:

Data-Driven Thinking” is written by members of the media community and contains fresh ideas on the digital revolution in media.

Today’s column is written by Jodi Daniels, founder and CEO at Red Clover Advisors.

Customer data platforms (CDPs) are the latest shiny new thing in marketing technology, helping companies create a single view of their customers by storing data such as web page views, email clicks and payment transactions.

In all that goodness, CDPs stockpile personal identifiers to help marketers connect that email message to a website click. That kind of personal data is a goldmine for content recommendations and personalized advertising.

Marketers can use CDPs with little IT department involvement and focus their energy on understanding the customer journey and create tailored marketing campaigns.

While the category continues to mature and marketers explore the CDP market, they must consider data privacy as a core criteria. CDPs are all about first-party data, which means companies are in full control of the data. This can help them better comply with privacy regulations, including the EU’s General Data Protection Regulation (GDPR), ePrivacy and the upcoming California Consumer Privacy Act (CCPA).

When evaluating a CDP, it is important that it allows a company to capture the legal basis for data collection, such as consent when applicable. A CDP also needs to easily support a company honoring individuals’ rights requests. Since the business initiates the collection of data stored in a CDP, it is also responsible for its security and determining the lawful basis for use under laws like GDPR.

Businesses, for example, must assess CDPs before selecting one to ensure that the CDP vendors under consideration are compliant with GDPR or CCPA as a processor, as required by these laws. The assessment should cover if the CDP is complying with privacy laws, identify how data is secured and that there are strong security controls. The assessment should also confirm data will not be used for any other purposes, analyze how the CDP will communicate if there is a data breach, and verify that the company has trained employees on privacy and security awareness.

When third-party data sources are relied upon to augment a data set within a CDP, a company will have to rely on that third-party vendor’s lawful basis for collection and use. In ad tech under GDPR, that’s getting harder to do. Many ad tech companies rely on consent but there is ongoing debate about the appropriate level of consent and whether the IAB framework will remain the standard.

The publisher with the most control of the data will be in a better position to serve its customers the most valuable content and advertising. Companies need to consider customers’ expectations on how to use their data. Customers may not fully comprehend how advanced marketing capabilities are, and there is a fine balance between valuable and too targeted – or, as it’s said in the industry, “too creepy.”

Marketers must treat CDPs as an opportunity to properly manage first-party data in a way that is privacy-safe, personalized and relevant. To make customer-centric decisions, companies must factor privacy considerations into the marketing strategy for leveraging the data in their CDPs. As marketers look to build a data advantage, first-party data has to be at the core. Whether it’s website visits or declared data from an app, a CDP is well suited to stitch and normalize.

Subscribe

AdExchanger Daily

Get our editors’ roundup delivered to your inbox every weekday.

The applications and potential are significant, but marketers must select and plan for privacy. Regulatory pressure is likely to increase, not lessen – as is consumer demand.

Follow Jodi Daniels (@redcloveradvsrs) and AdExchanger (@adexchanger) on Twitter.

Must Read

Comic: Gamechanger (Google lost the DOJ's search antitrust case)

DOJ v. Google: How Judge Brinkema Seems To Be Thinking After Week One

Where the DOJ v. Google ad tech antitrust trial stands after one week’s worth of remedies arguments.

Swish, A Company That's Bringing Programmatic to Product Sampling, Announces Seed Funding

Swish, a startup that partners with retailers to provide product full-size CPG samples to people doing their grocery shopping online, announces $2.3 million in seed funding.

DOJ v. Google: During Opening Arguments, The DOJ And Google Battle Over An AdX Divestiture

Court is back in session. And the fate of  the open internet is in the balance.

Privacy! Commerce! Connected TV! Read all about it. Subscribe to AdExchanger Newsletters
Chris Mufarrige, director, Bureau of Consumer Protection, FTC

FTC Consumer Protection Chief: No Easy Answers On Privacy, ‘Only Trade-Offs’

Privacy isn’t black-and-white, says the FTC’s Chris Mufarrige, promising evidence-driven consumer protection cases under the Trump administration.

How Encryption Keys Could Resolve The TID Furor

Rather than sharing universal TIDs that any DSP or curator can access, Raptive says publishers should instead share encrypted TIDs with an encryption key provided only to trusted demand-side partners.

Clear Channel Brings Mid-Flight Measurement To Its OOH Network

Clear Channel will provide advertisers weekly, mid-flight reports on outcomes driven by its inventory in order to bring OOH measurement closer to the speed of digital.