Governance, Risk & Compliance
Data Protection & Privacy Engineering
GDPR compliance built into systems rather than bolted onto them.
The situation
What the client receives
Schedule of deliverables
- Data mapping and Article 30 records of processing
- DPIA and prior-consultation support
- Lawful basis and legitimate interest assessments
- International transfer analysis, SCCs and transfer impact assessments
- Privacy by design and default control patterns for engineering teams
- Data subject rights procedure and breach notification playbook
- DPO-as-a-service
Frameworks and standards
Assessment is carried out against named references, so a conclusion can be traced back to the requirement it was measured against.
- GDPR (EU) 2016/679
- Regulation (EU) 2018/1725
- ISO/IEC 27701
- EDPB guidelines
Related services
Discuss this engagement
Tell us about the processing in question and the obligation behind it and we will set out the scope, the method and the reporting format.