The Importance of GDPR Consultancy to US Businesses in 2023

Complying with the GDPR is important if you’re trading with EU residents. Yet its importance is much wider than that – which is why having an EU GDPR consultant is essential. Data doesn’t operate to traditional borders. Just as your customers can come from anywhere in the world, so can their data. It’s why, even […]

Read More… from The Importance of GDPR Consultancy to US Businesses in 2023

The Primacy of Transparency over Technology in GDPR Requests

In today’s data-driven world, the General Data Protection Regulation (GDPR) has emerged as a crucial framework for safeguarding individuals’ personal data. Under the GDPR, individuals have the right to request access to their personal information through mechanisms like Subject Access Requests (SAR) and the Right to Erasure (RTE). While technology plays a significant role in […]

Read More… from The Primacy of Transparency over Technology in GDPR Requests

Use of Facebook’s tracking pixels in the EU

In a decision made by the Austrian Data Protection Authority (DSB), using Facebook tracking pixels directly violates GDPR, and fortifies the reasoning behind the “Schrems II” decision on transatlantic data transfers. Other European data protection authorities also share this view as we can see in recent published decisions. Background The “Schrems II” decision stipulated that […]

Read More… from Use of Facebook’s tracking pixels in the EU

Do Third Parties Process Your Data? Why You Need a DPA & SCC

If a third party processes data on your behalf, you’ll need a Data Processing Agreement in place to protect your customers and your business – and you could be fined if you don’t get one. Our GDPR Local Experts can explain you why. You run an organisation that wields a lot of data. Sometimes you […]

Read More… from Do Third Parties Process Your Data? Why You Need a DPA & SCC

What Your Company Needs to Know About SAR

The right for every individual to access data held about them is a core principle of the GDPR. Individuals get hold of that data via a subject access request (SAR), but how should the request be made – and what happens when you receive one? GDPR Local’s Zlatko Delev explains. In the UK and EU, […]

Read More… from What Your Company Needs to Know About SAR

GDPR Local

Data Breaches GDPR: I Didn’t Know We Could Be Fined For That? You may know that companies can be fined for GDPR violations. Since 2018, more than 1,100 organisations have been. But did you know that private citizens can also risk penalties for data privacy violations? Here, data protection specialist Zlatko Delev, shares his knowledge […]

Read More… from GDPR Local

GDPR Local

Consultancy Panel Data Protection Consultant? Join The GDPR Local Panel UK GDPR representative? EU rep? SOC2 guru? Wherever you are in the world, if you know data protection inside out, GDPR Local’s Zlatko Delev has an invitation for you. When you look cross-industry, data protection is a spectrum. At one end are the organisations who […]

Read More… from GDPR Local

GDPR Local

Consultancy Panel GDPR Advice? Ask Our Experts For one-off questions or ongoing, on-tap expertise, it’s good to have a GDPR Local data protection consultant on your side. Data protection specialist Zlatko Delev explains why. Let’s suppose that you run a growing tech services company in the US and you’re about to ramp up marketing activity […]

Read More… from GDPR Local

What are the Leading Causes for Individual GDPR Fines?

At least 65 private individuals have received fines for GDPR violations in the EU since 2018. The total number of GDPR fines since the law came into force in 2018 is 1,186, but only large fines against major corporations tend to make the news.  Still, private citizens can just as easily end up in court […]

Read More… from What are the Leading Causes for Individual GDPR Fines?

ICO issue fine of £4.4 to Interserve for security failings

On 24 October 2022, the ICO issued a penalty notice (MPN) to Interserve Group Limited (Interserve), imposing a fine of £4.4m for violations of the GDPR (the violations were pre-Brexit). The ICO found that Interserve had failed to put appropriate technical and organizational measures in place to secure personal data (in contravention of Articles 5(1)(f) […]

Read More… from ICO issue fine of £4.4 to Interserve for security failings