Law firm for implementing GDPR documentation
Well-ordered data protection documentation states how personal data are collected, stored and processed, and supports the management of the associated risks. Below we set out what such a matter requires of counsel and who leads this area at HWW.
What this matter requires of counsel
-
Begins with an audit of the processing
Counsel establishes the sources of the data, the areas of processing and the recipients, so that the documentation fits the business as it operates.
-
Prepares the full set of core documents
A coherent set covers the privacy policy, privacy notices, data processing agreements and the record of processing activities.
-
Describes how requests from individuals and breaches are handled
A person whose data are processed may exercise their rights, and an organisation may face a breach of data protection. Counsel prepares procedures that state who responds in each of those situations and how.
-
Fits the documentation to the scale and the sector
Counsel calibrates the documentation to the number of processing areas, the organisational structure and the number of counterparties; a dedicated sector study sits outside a core implementation.
Further described matters are listed under our track record.
What we have written on this topic
We confirm the scope and the fee before starting work. A paid consultation is not required.