Skip to content

    The Nordics · Copenhagen, Oslo

    Governance, risk and compliance for Nordic organisations, from people who built it here.

    The Nordics are where we started and where most of our work still sits. We support telecoms, digital services, retail, life sciences and public sector organisations in Denmark, Norway, Sweden and Finland, with partners who have led legal, compliance and security functions in the region.

    discuss an engagement →

    § 01The rules we cover

    Law by law.

    EU rules applied through national laws and national authorities. We know how each authority reads them and where national laws add their own requirements.

    01

    Denmark

    GDPR and the Danish Data Protection Act, enforced by Datatilsynet · national NIS2 law · Danish Financial Supervisory Authority requirements
    02

    Norway

    Personal Data Act, enforced by Datatilsynet · Digital Security Act and the NIS2 track via the EEA · Finanstilsynet ICT requirements
    03

    Sweden

    GDPR with the Swedish Data Protection Act, enforced by IMY · Cybersecurity Act implementing NIS2
    04

    Finland

    Data Protection Act, enforced by the Data Protection Ombudsman · Cybersecurity Act and Traficom supervision
    05

    Across the region

    DORA for financial entities · EU AI Act · Data Act, applied through EU and EEA rules
    § 03Who leads it
    01
    Nicholai Pfeiffer, Managing Partner, White Label Consultancy

    Managing Partner

    Nicholai Pfeiffer

    Managing Partner

    Nicholai has 20+ years of experience across governance, risk and compliance in the technology and telecommunications industries, spanning legal operations, regulatory affairs, procurement and compliance. He has served as Compliance Officer in previous roles and acts as interim Compliance Officer for WLC clients. At Telenor Denmark he was Legal Director and Chief Procurement Officer, leading the regulatory and legal stream of the network-sharing agreement with Telia and two spectrum auctions, after earlier roles as Head of Legal and Regulatory and Regulatory Affairs Manager. He then served 5 years as SVP, Chief Privacy Officer of Telenor Group, where he led one of the largest GDPR programmes in Scandinavia and advised executive management. Nicholai holds a Master of Law degree from the University of Copenhagen and the CIPM certification.

    02
    André Årnes, Partner, Head of Cybersecurity, Resilience and Risk, White Label Consultancy

    Partner

    André Årnes

    Partner, Head of Cybersecurity, Resilience and Risk

    André joined WLC as a Partner in January 2022, after having served 7 years as the Global CSO of Telenor Group. He has 20+ years of experience within security leadership, cybersecurity, and digital forensics. André is also a part-time Professor at the Norwegian Technical University (NTNU) Department of Information Security and Communication Technology.

    Nordic work is led by Nicholai Pfeiffer from our offices in Copenhagen and Oslo. See office addresses and phone numbers, or meet the full team.