Privacy Policy Development is the first and most crucial step for any digital business to ensure compliance with Georgia…
GDPR (General Data Protection Regulation) Compliance is critical for companies operating in Georgia that target the EU m…
Compliance with Georgian Data Protection Legislation is mandatory for all organizations processing information about ind…
HR Data Compliance is one of the most sensitive and risky areas for employers. In employment relationships, employers pr…
Marketing Data Compliance is an essential requirement for any company engaging in direct marketing in Georgia. SMS adver…
About this service A personal-data protection audit is the work that puts an organisation on its feet before an inspecti…
A foreign statute or the Georgian law: what governs data processing in Georgia The California Consumer Privacy Act is a…
Cookies and the Georgian law: the rules for consent Working with cookie files has no stand-alone legislative regime in G…
What a data protection impact assessment is and which law governs it in Georgia A data protection impact assessment is a…
Does the institution of standard contractual clauses exist in Georgia In international practice, standard contractual cl…
About this service A data incident — a security failure as a result of which data is accidentally or unlawfully destroye…
Dealing with the supervisory authority: what a business must know Engagement with the data protection supervisory author…
Employee data: from bases to monitoring The workplace is one of the most data-intensive environments: an employer collec…
Direct marketing and the data protection law Short messages, emails, calls and postal materials are all forms of direct…
The legal framework of international data transfers International data transfer unites two different but closely connect…
A data security breach arrives in three waves: the incident itself, the subsequent remediation, and legal liability. The…
What the right to data portability is The right to data portability lets the subject take their own data along when movi…
The right to request information: the Georgian legal frame The institution of a data subject's information request is of…
The right to erasure in Georgian law The right to demand the deletion of data is colloquially known in foreign terminolo…
Data Protection Officer (DPO) Advisory and Support Services The new Law of Georgia on Personal Data Protection s…
Who is the processor Under the definition of Article 3 of the Law on Personal Data Protection, the processor is a natura…
The institution of the data protection officer under Georgian legislation The data protection officer is the figure who…
Why a data breach response plan is necessary A data breach response plan is a document prepared in advance that defines…
About this service Health data — information on physical or mental health, tests, diagnoses, treatment history — is amon…
What cross-border data transfer means under Georgian law Cross-border data transfer means the transfer of data to anothe…
What counts as an incident under Georgian legislation Data breach response in Georgia rests on the norms of the Law on P…
Document destruction as a form of data processing Document destruction is often perceived as a mere technical operation…
The data processing agreement: what happens after signing A data processing agreement shapes the legal link between the…
The legal basis — why a written agreement is mandatory When an organization entrusts data processing to a third party —…
What a data retention policy is and why it is needed A data retention policy is an internal document that defines, for e…