Skip to content
Back to all services

External Data Protection Officer

Appointed external DPO for companies in Germany and the EU.

Certified External Data Protection Officer (GDPR)

The situation

You are required to appoint a DPO, or you don't want to fill the role internally — and you need someone who actually performs the duties rather than lending a name.

Companies with more than 20 employees that regularly process personal data are required to appoint a data protection officer. Violations can result in substantial fines.

What I deliver

  • Formal appointment and notification to the supervisory authority
  • Ongoing monitoring of GDPR and German BDSG compliance
  • Point of contact for employees, customers and authorities
  • Handling data subject requests and personal data breaches
  • Annual data protection report and action plan
  • Regular training and awareness sessions

Typical formats & duration

  • Monthly retainer with an agreed capacity
  • Onboarding phase: 4–8 weeks
  • Committed response times for data breaches

Free download

GDPR & AI Act checklist for development projects

The questions I ask first in software and AI projects — as a compact checklist for your product and engineering team.

  • Privacy by design: what to settle before the first commit
  • Roles, processing agreements and international transfers
  • AI Act risk classification in five steps

Placeholder PDF — the final edition follows. No newsletter, no sharing with third parties.

Let's talk about your project

30 minutes, free and without obligation. Afterwards you'll know whether and how I can help.

Book a free intro call