Privacy protection and the resulting personal data protection law imposes many obligations and constraints on legal entities (companies, associations, local authorities, public institutions, etc.). The required protection and control processes for personal data implementation is a major challenge for the e-commerce and the digital economy security and is applicable to any economic activity.

This challenge is considerable and the criminal and financial penalties incurred are commensurate with the level of security required: up to 20 million euros or up to 4% of the consolidated turnover of the group.

The French Data Protection Authority (CNIL) is carrying out, and will continue to carry out, an increasing number of controls for which companies must be prepared.

Our attorneys who are qualified Data Protection Officers, can carry out compliance audits and provide training in personal data management to clients who request it.

We have consistently assisted our French and foreign clients in fulfilling their GDPR obligations and have also outsourced DPO services. We support them in the deployment of their management and safeguarding programs for the personal data they collect and process. In case of litigation, our French or foreign teams (within the European Union) are able to assist our clients before regulatory bodies such as the CNIL and its European equivalents.

Our team can assist you in the following areas:

  • Personal data processing compliance audits,
  • Training of personnel in GDPR,
  • Compliance audits, action plans, retro planning, alert and crisis management procedures, consent management, IT security,
  • Securing data collection,
  • Completion of formalities with the CNIL in case of data breach,
  • Compliance audits of internal departments: Marketing, HR, CISO, Purchasing, General Services,
  • Data Privacy Officer training and the keeping of Data Processing Registers,
  • CNIL compliance audits of subcontractors (processing and securing of personal client data),
  • External Data Protection Officer,
  • Cookies policies compliance,
  • Internal charters drafting for the management of personal data, arbitration with the internal regulations and management with the staff representative,
  • IT Charter drafting, arbitration with the Internal Regulations and management with the staff representative,
  • Data transfers outside the European Union supervision.