Services
01. Data Protection
Data Protection driving Innovation
Rather than obstructing core business activities, data protection should support them. That's why I guide my clients in recognising and leveraging the economic value of their data, all the while ensuring legal compliance. When implemented properly from the outset, data protection compliance can drive new business processes.
I support the efficient and auditable implementation of data protection processes, from strategic planning to operational delivery. As an expert in this field, I base my advice on my clients' strategic and operational goals rather than simply explaining the abstract legal situation.
Services
-
Data Protection Governance
I advise my clients on establishing data protection-compliant processes and structures – whether in a corporate environment, medium-sized businesses, or start-ups – tailored to their risk and business model. I accompany them from process analysis to the creation of mandatory data protection documentation (e.g., processing records, data processing agreements, data protection impact assessments (DPIAs), and internal data protection policies).
-
Data Usage Concepts
I act as a sparring partner for management, business units, and data protection officers when it comes to developing new data usage models. Together, we develop a sustainable strategy that will help you get more out of your data.
-
Data Protection and Marketing
The area of marketing and data usage is legally sensitive. I review advertising concepts with a focus on digital and social media marketing and prepare the necessary legal documentation for a secure marketing concept. Early involvement is particularly worthwhile in the areas of profiling, big data analysis, predictive analytics, and similar methods. I also advise on fundamental topics such as retargeting and cookie matching.
-
Data Protection and New Technologies
Whether it's AI, complex data ecosystems, or cloud-based business models, I ensure that innovative business models and regulatory requirements are compatible. I advise you on the introduction of new products and services – especially with a view to "data protection by design and by default."
-
International Data Transfers
Whether outsourcing your own business processes to third countries or regularly exchanging data with business partners and service providers (e.g. cloud computing) - I advise you on legally compliant solutions for international data transfer (e.g. standard data protection clauses, BCR and international agreements such as the EU-US Data Privacy Framework).
-
Training and Awareness
Whether management or specialist department: I offer individual workshops to communicate relevant data protection requirements in an understandable way and tailored to your business.
-
Data Breaches & Communications
Data breaches happen. I provide advice on legal obligations in such cases, including appropriate investigative measures and mitigation strategies. I also advise on reporting obligations to supervisory authorities, customers, or other data subjects. If requested, I also handle external communications relating to complaints from data subjects, as well as investigations and sanction proceedings by supervisory authorities.