En
De

Blog

How to structure your DPO team
How to structure your DPO team

In a tech business, processing data means generating profits. Whether a sales representative is searching for leads or a data scientist is analyzing clients’ data, the company processes personal data and must, therefore, comply with the GDPR.  But compliance with the GDPR is also a tricky task. Where to start? Who to ask? What is […]

May 22, 2024
Targeted Ads: Precision Marketing in a Privacy-First World
Targeted Ads: Precision Marketing in a Privacy-First World

What is marketing and its types? Marketing refers to any actions a company enacts to attract an audience to the company’s product or services through high-quality message delivery conducted in different ways. Marketing aims to deliver standalone value for prospects and consumers through content, with the long-term goal of demonstrating product value, strengthening brand loyalty, […]

May 13, 2024
Technical aspects of GDPR compliance
Technical aspects of GDPR compliance

The GDPR establishes the fundamental principles of personal data processing, but, at the same time, the regulation does not provide preferable technologies or methods. Thus, to bring the system into compliance with the regulation, it is necessary to obtain that information from third-party sources. The logic of the regulation creators is that the variability of […]

May 10, 2024
Risk Control & Risk Factors in Cybersecurity
Risk Control & Risk Factors in Cybersecurity

In today’s rapidly evolving digital landscape, ensuring information security is paramount for organizations and governments worldwide. Significant challenges arise from countless possible negative events, which threaten overall system security, data integrity, and confidentiality. These events, ranging from accidental data leaks to massive dedicated cyber-attacks, can result in severe consequences not just for data processors, but […]

May 10, 2024
Balancing Innovation and Privacy: AI in the Age of Regulation
Balancing Innovation and Privacy: AI in the Age of Regulation

Recently, artificial intelligence (AI) has become an integral part of technology and an active assistant in everyday life. However, implementing AI in business solutions requires compliance with industry-specific regulations. While the European Commission is working on comprehensive regulation of this issue in the Artificial Intelligence Act, the GDPR remains the main basis for compliance. One […]

May 10, 2024
Specific regulation of personal data protection part 1: health, genetics, biometrics
Specific regulation of personal data protection part 1: health, genetics, biometrics

What is biometric data? The GDPR states that it is personal data resulting from specific technical processing relating to the physical, physiological, or behavioural characteristics of a natural person, which allow or confirm the unique identification of that natural person, such as facial images or dactyloscopic data. Examples of biometric data include fingerprints, retinal patterns, […]

May 9, 2024
Conducting a Data Protection Maturity and Gap Assessment
Conducting a Data Protection Maturity and Gap Assessment

Accountability is one of the principles of data protection. This principle requires the company to take responsibility for what the company do with personal data and how it complies with the other principles. It follows that this principle establishes the company must demonstrate its compliance, i.e. implement the necessary procedures and develop documents. Developing a […]

May 9, 2024
GDPR Training: an instrument for maintaining compliance
GDPR Training: an instrument for maintaining compliance

Living in a world where a huge volume of information is processed every second, it is crucial to understand the necessity and value of personal data. Spreading awareness helps ensure security, thus protecting the interests of data subjects. In turn, it helps to secure the market position of the data holders: ensuring the privacy of […]

October 24, 2023
The main takeaways from the CJEU judgement in the Meta vs. Bundeskartellamt (C-252/21) case 
The main takeaways from the CJEU judgement in the Meta vs. Bundeskartellamt (C-252/21) case 

On the 4th of July 2023, the CJEU finally ruled on the judgement in the case Meta vs. Bundeskartellamt (C-252/21). This judgement states essential considerations about the legal grounds for processing, sensitive personal data and the competition authorities’ powers concerning the GDPR. A brief overview of the case  How does Meta collect personal data? For […]

September 19, 2023
The Role of Data Categorization in Information Security Policies
The Role of Data Categorization in Information Security Policies

Information has always been the lifeblood of civilization, yet not all information holds the same weight. Historically, society didn’t pay much attention to data flow organization, separation, reservation, masking or encryption of information as it is today. Usually it was somehow natural, rarely regulated and, sometimes, even, chaotic, when compared to nowadays. First of all, […]

September 4, 2023