When GDPR came out, there was a provision within the regulation that said that organizations needed to have a data protection officer (DPO) to help ensure compliance and enforceability with the new regulation. The crucial role of a DPO tends to naturally disposition to the IT Asset Manager. The IT Asset Manager needs to create policies to ensure that GDPR is being followed closely.

