Ensuring your data and CRM system is protected from potential risks is essential. We would advise preparing a Data Protection Policy with security information and risk register to assess and mitigate risks through preparing processes and equipping your systems against any potential data breaches. Salesforce CRM offers a range of security features, but these need to be applied and managed by team members, so there needs to be little room for human error. The role of the Data Manager is essentially important here.
We would suggest completing Trailheads that make you aware of all of the security features and practices that Salesforce offers to help protect your data and to create your data protection policy.
https://trailhead.salesforce.com/trails/learn-privacy-and-data-protection-law
Learn about the General Data Protection Regulation (GDPR) and how to comply.
https://trailhead.salesforce.com/trails/identity
Learn how Salesforce Identity lets you give the right people the right access to the right resources at the right time.
https://trailhead.salesforce.com/trails/security
Learn how you and your users can worktogether to keep your data safe.