Data Privacy Consulting for International Clients

Our data privacy consulting guides you through the applicable legal rules in Germany and the EU and ensures your company’s compliance with the rules of the EU General Data Protection Regulation (GDPR) and other specific privacy laws.
In the past years, we have been working actively with companies and institutions introducing new business models to the EU market, e.g. in the health sector, or in the advertising industry.
For companies outside the EU, we also offer services as a European representative or European DPO according to GDPR. Contact us now!
We offer different consulting packages, including an analysis of the existing level of data privacy in your company and identify potential lacks and risks. Our Clients receive a detailed report of the check-up results as well as concrete recommendations to improve the existing level of compliance, and a suggestion for an individual data protection concept. Our concept is built on the conviction that a high level of data privacy facilitates the realization of new business models and actively contributes to the success story.
Our data privacy consulting is based on the Client’s individual needs and may include the following topics:
- the use of cloud services including questions of appropriate Technical and Organizational Measures
- the processing of sensitive data (health data, social data)
- IT security law, in particular in sectors of critical infrastructure (e.g. health, transport, IT & telecoms)
- Identifying options for privacy certifications & giving a Legal Expert Opinion for the EuroPrise Privacy Seal
- rights to transfer and sell data
- “ownership” questions of data
- anonymization and pseudonymization of personal data
- data processing agreements (DPAs) and joint controller agreements
- data from website users (tracking data/webanalytics)
- data privacy requirements for online marketing
- the use of employee data
- solutions for data protection audits
- the use of internet and email for private purposes
- the use of private hardware for professional use (Bring Your Own Device)
- prospective changes in the legal situation (e.g. envisaged EU E-Privacy Regulation)
- communication with regulatory authorities and respective proceedings and controls, if necessary
If you have any questions please contact me:
Dr. Jana Jentzsch
She advises international clients in EU data privacy law.
Call us: +49 40 22 86 83 86 0 or e-mail us

IT-Security
In an increasingly digitalized world, protecting data and systems is more important than ever. At MARAIT, we understand the importance of robust IT security and specialize in helping companies protect themselves from the ever-growing threats, especially from cyberspace. There are a number of laws and regulations in the field of IT security, especially in connection with protecting data and ensuring the security of information technologies, which must be constantly observed. The provisions of the General Data Protection Regulation (GDPR) and the German Federal Data Protection Act (BDSG) play a decisive role here.
Due to constant change, companies must always be prepared for new challenges in cyber security. The EU has also recognized this and has therefore created a range of new legislation:
- Cybersecurity Act,
- NIS-2-Directive,
- CER-Directive,
- Digital Operational Resilience Act (DORA),
- Cyber Resilience Act (CRA)
In view of this, it is crucial to understand the regulatory framework and to know how to reconcile it using state-of-the-art protection mechanisms. We can help you with this!
Our services/offerings include, among others:
- Analysis of the status quo: We check whether the processes and standards you use for IT security comply with the legal requirements and which measures you need to implement to achieve legal compliance.
- Implementation of IT security measures: We offer comprehensive legal support and advice on the selection and implementation of IT security measures in your company. In doing so, we take into account technical aspects as well as labor law and co-determination requirements. Our aim is to provide you with comprehensive legal support to ensure that your IT security measures are not only effective, but also comply with legal requirements.
- Training and awareness-raising: We offer training and awareness-raising programs to make your employees aware of the dangers in cyberspace and enable them to practice security-conscious behaviour. After all, your own employees are often the first line of defense against cyber attacks. We also inform you about legal requirements, such as the data security requirements of the GDPR, and findings from case law.
- Incident response: In the event of a security incident, we provide you with recommendations for action so that you are prepared to react immediately and appropriately in an emergency. Our team will also help you to investigate incidents, minimize their impact and take appropriate measures to restore security.
- Network: If required, we work together with certified technical specialists and auditors in the field of IT security who are also authorized to carry out acceptance tests, e.g. in accordance with BSI basic protection or ISO 27001. The involvement of IT security specialists can also be useful when preparing for an audit.
Contact us via our contact form or give us a call to find out more about how we can help you strengthen your IT security and protect your company from cyber threats.