The compliance lead’s first ninety days
You own the obligation and almost none of the data. Every attribute a passport needs sits in sourcing, product development or a supplier you have no contract with, and you will be the one asked why it is missing.
- Role
- Head of Compliance
- Most common pitfall
- Being made accountable for the programme without authority over the functions holding the data. Fix the ownership map before the timeline, or the timeline is fiction.
1Establish scope per product group, not per product
ESPR attaches obligations to groups. Until the groups are listed, nothing else can be scheduled and every estimate is guesswork.
2Publish a gap register with a named owner per attribute
It converts an aggregate readiness figure into assignable work, and it makes visible that most gaps are not yours to close.
3Get the access policy agreed before the first passport is published
Attribute visibility cannot be retrofitted once a passport is publicly resolvable, and commercial teams will object after launch rather than before.
4Set the correction process, and rehearse it
Suppliers submit figures that turn out to be wrong. A programme with no route to correct a published passport has a compliance problem the moment it succeeds.
5Track delegated acts as they are adopted, with a named owner
The eighteen-month clock starts without anyone telling you, and being late is a market withdrawal rather than a fine.
We will run a scope and gap session against your real product groups, not a generic template. Ask for it.