Privacy, Cyber Security and Data Protection

Contact

Clients greatly appreciate working with Portolano Cavallo because they are not only excellent professionals in those areas of the law that are crucial for companies, but they really take care of their clients by sending out alerts (e.g. regarding new laws or deadlines), and making themselves available for calls even on very short notice if needed.”
LEGAL 500 EMEA 2025 - DATA PRIVACY AND DATA PROTECTION
Personal data and information is a fundamental asset for any kind of business nowadays. Information and data need to be managed efficiently, adequately protected and exploited. At the same time, risks connected with the use of information (cyber risks, data breaches, etc.) may cause not only economic damages but also affect significantly a company’s reliability and reputation. The development of new technologies and the diffusion of cloud infrastructures need to be carefully approached on a national level, but also considered under a global perspective, bearing in mind implications concerning jurisdiction, competent authorities and applicable laws.

Three professionals of the practice area group obtained the Certified Information Privacy Professional/Europe (CIPP/E) certification through the International Association of Privacy Professionals (IAPP), one obtained the Certified Information Privacy Manager (CIPM) certification through IAPP and one obtained the “Expert European Privacy Auditor / Lead Auditor” certification for the ISDP©10003 certification scheme.

Our firm’s assistance concerns any aspects connected with data protection laws, including:

  • data protection compliance
  • data security and data breach
  • data transfers
  • cookies
  • employees’ control
  • cloud computing
  • mobile apps
  • payment systems
  • clinical trials
  • wearable technologies
  • big data
  • privacy of employees
  • information governance
  • retention policy
  • etc.

In particular, some of the activities carried out by the firm in these fields are:

  • assistance relating to the implementation of clinical trials in Europe;
  • assistance in relation to multi-jurisdictions CRM compliance projects;
  • assistance in relation to privacy issues connected with the launch of an e-commerce activity in Europe;
  • strategic consultancy is relation to transfers of personal data abroad;
  • compliance with data protection laws and cookies requirements;
  • assistance in relation to the processing of data within social networks;
  • assistance in relation to proceedings before the Italian Data Protection Authority (Garante per la Protezione dei Dati Personali);
  • assistance in connection with independent agencies’ requests to access personal data;
  • drafting of policies for internet security and business’ email address use;
  • etc.

Best privacy and data protection practice in town.”
LEGAL 500 EMEA 2024 - DATA PRIVACY AND DATA PROTECTION
Very knowledgeable with solid connections to the Italian data protection authority. They give practical advice and are able to tailor advice to the needs of a multi-national organisation."
LEGAL 500 EMEA 2023 - DATA PRIVACY AND DATA PROTECTION

People

Follow us on