GDPR Services

We cover GDPR requirements and related legislation, so that your organization is compliant, protected and ready for audits or inspections.

What's included

What GDPR implementation includes

From diagnosis to operationalization — everything you need for a working compliance programme.

Compliance analysis (gap assessment)

We identify your current level of compliance against legal requirements — processes, documentation, internal practices and supplier relationships.

Inventory and mapping of processing

We build/update the GDPR records, map personal data flows and establish legal bases and retention periods.

Internal policies and procedures

Data protection policies, procedures for data subject rights, IT procedures, BYOD rules, remote work, archiving and erasure.

Documentation for third-party relationships

Privacy notices, confidentiality policies, GDPR clauses in contracts, data processing agreements, consent forms and website texts (cookies, banners).

Impact assessments & legitimate interests

DPIA for high-risk processing and LIA (legitimate interest assessment), carried out or supported by our team.

Technical and organizational measures

We recommend proportionate measures: access control, logging, pseudonymization, IT policies and incident response procedures.

Training and awareness

Sessions for management, HR, IT, sales and the teams involved, with materials tailored to your organization.

Our process

How we work

A clear, six-step process, from understanding the context to continuous improvement.

1

Kick-off & context

We understand your business model, structure, IT systems, internal processes and growth directions.

2

Inventory & diagnosis

We collect information about processes, documents, contracts and flows; gap analysis and critical risks.

3

Action plan

A phased plan with actions, owners and deadlines; we highlight the quick wins.

4

Implementation

We develop/review the necessary documents, refine internal flows and establish working procedures.

5

Training & operationalization

We train the teams and test the new procedures with concrete examples and practical support.

6

Continuous monitoring

Mechanisms for periodic review, to keep the GDPR programme up to date with changes.

Benefits

The benefits of a well-built GDPR programme

Compliance is not a final formality — it becomes part of your business decisions and new projects.

Book a meeting
Let's talk

Want a working GDPR programme?

We analyse your context and propose a clear plan — with steps, owners and deadlines.