December 9, 2024

International data transfers: TIAs vs TRAs

As businesses expand globally, transferring personal data across borders has become a routine part of operations. However, these transfers carry inherent risks that require careful consideration […]
September 2, 2024

How to apply the GDPR to historic records

The GDPR has been in effect since 2018, and most organisations have implemented comprehensive data protection programmes to manage personal data processing. However, questions still arise […]
July 22, 2024

Protecting patient data: How to stay CQC compliant

Protecting patient data and staying compliant with Care Quality Commission (CQC) expectations are top priorities for the care industry in England today. The CQC’s recent push […]
May 27, 2024

Canadian Privacy Laws: PIPEDA and Data Protection

Q&A with Ray Pathak, MD The DPO Centre, Canada The Personal Information Protection and Electronics Act (PIPEDA) was enacted in April 2000. Since then, there have […]
May 13, 2024

Quebec’s Law 25: A guide to support compliance

Organisations that collect, process and store the personal information of Quebec individuals must ensure their existing privacy programs are in line with the provisions of Quebec’s […]
April 15, 2024

Data protection compliance: Law firm vs outsourced DPO services

When it comes to ensuring data protection compliance, organisations often face a choice between engaging a specialist law firm vs outsourced DPO (Data Protection Officer) services. […]
March 18, 2024

What is a DPA and why do you need one?

A Data Processing Agreement (DPA), also called a Data Processor Agreement, is a legally binding contract between a data controller (usually your organisation) and a data processor […]
January 22, 2024

International Data Transfers: Explaining EU SCCs, UK Addendum and UK IDTA

EU and UK-based organisations regularly need to transfer personal data to different countries for a variety of reasons – project collaborations, partnerships, service providers etc.  With […]
December 11, 2023

Data retention and the GDPR: Best practices for compliance

How long should we keep different types of personal data?  How can we create an effective data retention policy and schedule?  What role do data controllers, […]
October 30, 2023

Vendor due diligence & GDPR compliance: 5 practical steps

From IT solutions to DPO services, accounting, and customer services, the global outsourcing sector is expanding to support the needs of organisations across all industry sectors. […]
Change your cookie consent