Privacy Law

Under the guidance of the senior partner Prof. Avv. (lawyer) Giuliano Palma, the international law firm Palma & Partners provides tailored legal consultancy and assistance to companies in the field of personal data protection, both during the training of staff and in ensuring compliance with the documentation required by law and the new European regulations.

A detailed analysis is carried out, and procedures are identified to ensure compliance with the new Regulation, along with the drafting of specific documentation for each individual entity, in preparation for the full implementation of GDPR 679/2016, as well as the Privacy Code as amended by Legislative Decree 101/2018.

 

In particular, among the various services offered, we highlight the following:

  • Gap analysis with respect to the requirements and consultancy for compliance;
  • Assistance in drafting the required forms;
  • Assistance in drafting the processing registers;
  • Assistance in carrying out the DPIA (Data Protection Impact Assessment), a process aimed at describing personal data processing, assessing its necessity and proportionality, as well as managing any risks to the rights and freedoms of individuals, by evaluating the impact level and determining the appropriate measures to mitigate it;
  • Definition of the training plan for employees and implementation of interventions.
  • Assistance in defining company policies regarding privacy by design and by default;
  • Assistance in defining adequate security measures, through risk analysis and the evaluation of specific risks involved in the processing;
    Assistance with cross-border data transfers between EU countries and third countries;
  • Contracts for data transfer:

– Data transfers to non-EU countries in compliance with the standard contractual clauses issued by the European Union following the European Commission’s decision;
– Data transfers to non-EU countries in accordance with direct agreements, e.g. “EU-U.S. Privacy Shield,” to provide companies on both sides of the Atlantic with a mechanism to comply with data protection requirements when transferring personal data from the European Union and Switzerland to the United States in support of transatlantic trade, or with the general authorisations granted by the data protection authorities and the European Commission for data transfers to third countries, including binding corporate rules.

Our team’s advanced expertise enables us to support the compliance process for already operational companies towards GDPR, as well as guide the creation and development of startups and innovative businesses.
In line with promoting scientific training in the field of Privacy, the international law firm Palma & Partners has also hosted internships for students of the II-level Master’s in “Data Protection Officer and Privacy Law,” sponsored by the Data Protection Authority and promoted by the European Commission, held by the University of Suor Orsola Benincasa – Naples, in consortium with three foreign universities: Sevilla (Spain), Loughborough, and Derby (United Kingdom).