GDPR / COMPLIANCE

Data Protection in Dresden — GDPR Concepts, Audits and Ongoing Support

Data protection concepts, audits, records of processing activities and technical and organisational measures. We make GDPR practical rather than producing 80-page PDFs that nobody reads.

Data protection — image from the Webuniverse website

Typical Starting Point

These are the problems we most often encounter in Dresden businesses — and where we start:

  • You are unsure whether your cookie solution actually complies with GDPR.
  • There is no external data protection officer, or the internal role is unclear.
  • Records of processing activities and technical and organisational measures are outdated or missing.
  • Nothing would be documented if the supervisory authority received a complaint.
Services in Detail

What We Do

GDPR Audit

An inventory of all processing activities, risks and gaps, with clear priorities.

Records of Processing Activities

Structured documentation of all processing activities — understandable and ready for audits.

TOMs

Documented and verifiable technical and organisational measures.

External Data Protection Officer

We act as your external data protection officer — practical and approachable.

Employee Training

Live training or e-learning with documented attendance.

Data Breach Response

Emergency procedures, reporting obligations and documentation — prepared before an incident occurs.

Process

Our Approach

Audit

Inventory, risk analysis and priorities.

Planning

A data protection roadmap, records of processing activities and technical and organisational measures.

Implementation

Technical measures, contracts, data processing agreements and privacy policies.

Training

Raise employee awareness and document participation.

Ongoing Operations

External data protection officer, annual reviews and responses to enquiries and incidents.

Technologies & Methods

Stack

Records of Processing ActivitiesData Processing AgreementCookie ConsentTOMsePrivacyTTDSG
FAQ

Frequently Asked Questions About Data Protection in Dresden

Do we need a data protection officer?

Appointment is mandatory from 20 people who regularly process personal data, or if you carry out extensive profiling or tracking. We assess this based on your processing activities — appointment can also be worthwhile where it is not mandatory.

How much does an external data protection officer cost?

Typically €180–450 per month for SMEs in Dresden with 20–100 employees, depending on the sector and extent of processing. The initial audit is offered at a fixed price.

Does a cookie banner automatically comply with GDPR?

Rarely. Many implementations look polished but set tracking cookies before consent or fail to record consent in a verifiable way. We audit against TTDSG and GDPR and configure a compliant solution.

What happens in a data breach?

A 72-hour reporting deadline to the supervisory authority, notification of affected individuals where required and complete documentation. We establish an emergency procedure with you and support you during an incident.

Do you also write website privacy policies?

Yes, but we do not copy templates. We scan your website for trackers, list all processors and write an accurate, readable policy rather than one only lawyers enjoy.

Let's apply this to your project.

Describe your starting point in two sentences — we respond within 48 hours on business days with an initial assessment and next steps.

Discuss Your Project →