Jovan Stevovic’s Post

View profile for Jovan Stevovic, graphic

CEO at Chino.io - making data protection simple. PhD in privacy and health tech, CIPP/E, passioned about innovation.

Whether you like it or not, choosing a provider outside the EU will have an impact on your business whether you are GDPR compliant. ✅ This doesn’t mean, however, that you can’t choose providers outside the EU (this is a common misconception)—you just have to do it right! (By the way, being inside the EU doesn’t mean you’re automatically compliant, either!) Lots of companies ask us about using Chinese hardware or Software Agencies from India or Vietnam, just to name a couple of examples. And many others ask about other extra-EU countries like the United Kingdom or the US. 🤔 How do you find the right provider with the least impact on your data protection risks? You look for providers from countries with an adequacy decision. 🇪🇺 An adequacy decision is a formal decision made by the EU Commission that recognises that another country (or international organisation) provides an equivalent level of protection for personal and sensitive data as the EU does. Basically, it is a kind of data transfer inside the EU (no big issues here). So, can you still use a provider from a country without an adequacy decision? Yes - but you will have to do some extra bit of homework, for which we left some guidance in the PDF guide 🙂 If you are interested in these topics, let’s connect 👉 Jovan Stevovic And of course, feel free to reach out to us 🙂 #gdpr #compliance #digitalhealth #chinoio

Sathish Varman

I Help SaaS Companies Acquire Paying Users Without Free Trials Or Paid Ads. Try it for 30 days without the upfront investment by sending me a DM.

8mo

Great point about misconceptions regarding GDPR compliance!

Like
Reply

To view or add a comment, sign in

Explore topics