GDPR for companies: tailored personal data protection
Regulation (EU) 2016/679 (GDPR) and Act No. 18/2018 Coll. apply to every company that processes personal data of employees, customers or website visitors. We prepare the documentation, set up processes, provide a data protection officer if needed and help during an inspection by the authority. From Košice for all of Slovakia.
access, rectification, erasure or objection, usually handled within 1 month (Art. 12)
Data breach
notification to the authority within 72 hours and a register of incidents (Art. 33)
CCTV systems
informing about monitoring and keeping recordings proportionate
Under Regulation (EU) 2016/679 and Act No. 18/2018 Coll. on personal data protection.
What we provide for you
Analysis and documentation
We map what data you process and prepare the documentation and records of processing activities.
Risk assessment
We assess the risks and, for high-risk processing, also carry out a data protection impact assessment.
Data protection officer
If you are required to have one, we provide it as an outsourced service under Articles 37 to 39 GDPR.
Website and cookies
We prepare texts and recommendations for your website, forms and cookie consents.
Employees and HR
We set up the processing of applicants' and employees' data. More in our article GDPR in HR (in Slovak).
Authority inspection
We advise you and prepare documents for an inspection by the Office for Personal Data Protection of the Slovak Republic.
Frequently asked questions about GDPR
Does GDPR also apply to a small company or sole trader?
Yes. GDPR applies to anyone who processes personal data of employees, customers or suppliers, regardless of size. However, the scope of obligations differs depending on what data you process and how.
Must companies with fewer than 250 employees keep records of processing activities?
In practice, yes. The exemption for smaller companies does not apply if the processing is not occasional, and processing employee or customer data is not occasional (Art. 30(5) GDPR).
Do we need a data protection officer?
Only in the cases set out in Art. 37 GDPR: if you are a public authority, or if your core activity involves large-scale and systematic monitoring of people or large-scale processing of special categories of data. We will assess this and, if necessary, provide a data protection officer as an outsourced service. More in our article GDPR data protection officer (in Slovak).
What should we do in the event of a personal data leak?
A personal data breach must be reported to the Office for Personal Data Protection of the Slovak Republic within 72 hours of discovery if it is likely to result in a risk to people's rights (Art. 33 GDPR). If the risk is high, the data subjects must also be informed.
Who supervises GDPR compliance?
The Office for Personal Data Protection of the Slovak Republic. We will prepare documents for you and advise you during an inspection.
What fine can be imposed for a GDPR breach?
Under Art. 83 GDPR up to €20 million or 4% of worldwide annual turnover, and for certain breaches up to €10 million or 2% of turnover.
We take care of GDPR for you
Documentation, processes, a data protection officer and help during inspections. You get an exact quote within 24 hours.
V zložitej spleti vyhlášok, noriem, zákonov a kontrol preberáme starosti za našich klientov. Vy sa venujete tomu, čo je pre vás dôležité – vašej firme.
In a complex web of decrees, standards, laws and inspections, we take the worry off our clients' shoulders. You focus on what matters to you – your business.