Data Protection - Compliance | Fieldfisher
Skip to main content

Procedure

Within the scope of a detailed stocktaking, we analyse the relevant data processing processes and data flows in the different business areas of our clients and check where there is still need for action in order to meet the requirements of the GDPR and to avoid liability risks. We are familiar with a wide range of industries and know the specifics of many sectors from numerous international GDPR compliance projects.


With one of the largest international teams of data protection law specialists in Europe, we advise on complex data protection projects just as efficiently as on individual questions of contract drafting and the development of new, data-driven business models.

With practicable solutions, we help to reconcile the often-difficult balance between data protection compliance and the business interests of our clients. 

Thanks to our many years of practice, we have excellent contacts with the supervisory authorities. Our team of experts is familiar with the legal concerns and expectations of the authorities and focuses its advice on the key issues.


Data Protection Compliance GDPR
A Challenge for Every Company
Since the new European Data Protection Regulation (GDPR) and the significant increase in fines to up to EUR 20 million or 4% of global annual turnover, risk awareness in the area of data protection has increased significantly. Every company that processes personal data in the European Union (EU) must in many cases comply with the GDPR even if it has no registered office or branch office within the EU. The GDPR is directly applicable law, but is partly supplemented by national data protection laws, through which some EU Member States have made use of the numerous open clauses of the Regulation. Understanding the data protection provisions of the GDPR and correctly mapping the extensive information and documentation obligations and the necessary processes within the company is a major challenge and requires close cooperation between the legal and compliance departments, IT, the specialist departments and external consultants. Complex data protection issues often now arise, especially with the digital transformation of many economic sectors, the increase of business and marketing models (based on data processing) as well as the use of big data or data analysis models. The corresponding legal and regulatory obligations represent a significant subset of the entirety of compliance requirements and should be on the agenda of every Chief Information Officer (CIO) and Chief Compliance Officer (CCO) today in the context of their risk and compliance activities. At the same time, the data protection supervisory authorities throughout Europe, but above all in Germany, are increasingly active and regularly check, even without cause, whether, how and to what extent the requirements of the GDPR have been implemented in certain sectors.

Range of services

We provide all services in the field of data protection and IT security law, in particular:

  • Implementation of GDPR compliance projects
  • Review and preparation of all contracts relevant to data protection law, especially in connection with international data exchange
  • Data protection due diligence
  • Analysis and data protection evaluation of data-driven business models and processes
  • Advice and representation before supervisory authorities and in court proceedings
  • Position of the company data protection officer - we take over the tasks of the data protection officer in your company and support you in implementing the GDPR