The DPO role: Key resources

The DPO role: Key resources

members 3 min read
🇧🇷 Interesting DPO survey highlighting familiar challenges | 🇪🇸 Andalusia DPA in June: DPOs in public sector can't also be infosec officer | 🇱🇹 2025 DPO guide | 🇳🇴 New DPO podcast series | Key DPO role resources: CJEU, EDPB, DPAs, EDPS, GDPR commentaries and more
EDPB meeting minutes 8 Jul 2025

EDPB meeting minutes 8 Jul 2025

members 2 min read
Joint EDPB-EDPS simpler ROPA opinion | Data Act MCTs & SCCs | Comments on EC's Art. 28 DSA Guidelines | Update on 🇩🇪 Federal DPA Vodafone €45m fines | BCRs: 🇳🇱 Aramex, 🇳🇴 Wilh. Wilhelmsen Group | Certification criteria: 🇦🇹 BDO, 🇩🇪 TÜV IT
The DPO role: Article 37(1)(b)

The DPO role: Article 37(1)(b)

members 5 min read
10 Oct: Estonia's thresholds for 'large-scale' (5k, 10k, 50k) | Breaking down Article 37(1)(b) key terms: 'core activities', 'regular', 'systematic', 'monitoring' and 'large scale'. And what should you do if you're still unsure whether you need to appoint a DPO? Appoint one voluntarily?
CJEU C-655/23 Quirin Privatbank 4 Sep 2025

CJEU C-655/23 Quirin Privatbank 4 Sep 2025

members 3 min read
GDPR offers no judicial remedy outside erasure requests to stop future unlawful processing, but Member States may. Non-material damage covers negative feelings – if proven. A controller’s fault doesn’t affect compensation, and a court order banning repeat GDPR violations can’t reduce or replace it.