Skip to content

White Label

Our Blog

Governance Program
Compliance

The EDBP’s Stance on the Pay or Okay Model

Interesting developments concerning data protection in the EU! As you may recall, in December 2023, we published a comprehensive guide on the “Pay or Okay” model introduced by Meta in response to several legal challenges regarding its use of lawful grounds for processing users’ data for behavioural advertising (read more about it here: https://whitelabelconsultancy.com/2023/12/processing-data-for-behavioural-advertising-metas-use-of-gdprs-legal-bases-and-the-new-pay-or-okay-model/). We concluded the discussion with the

Read More »
Compliance

Is Your DIFC Notification Up to Date? The Power of Processing Notifications

In the ever-evolving landscape of data protection, organizations must be proactive in safeguarding their operations against potential enforcement actions and fines. One pivotal step in this journey is often underestimated – whether you are a newly established entity or a well-established organization in the DIFC, it is essential to understand the significance of the preparation of the Data Protection Processing

Read More »
Compliance

Processing Data for Behavioural Advertising: Meta’s Use of GDPR’s Legal Bases and the New Pay or Okay Model

Would you be willing to pay for the preservation of your privacy? This is the inquiry Meta presents to its Facebook and Instagram users, offering not to track their behaviour for advertising at the cost of €9.99/month on the web or €12.99/month on iOS or Android. This so-called “Pay or Okay” is being implemented by Meta in response to numerous

Read More »
Compliance

Understanding the EU Data Act

On November 27, 2023, the European Union took a significant step in shaping its digital landscape. The Council approved the Data Act, which will officially take effect 20 days after its publication in the EU Official Journal. This Act establishes extensive rules for handling and sharing data from “connected products” and “related services.” Scope The Act aims not just to

Read More »
Governance Program
Compliance

KSA Takes on Personal Data Protection

As Saudi Arabia introduces its Personal Data Protection Law (PDPL), organizations based in the region should be aware of its data protection requirements, and those operating internationally must be able to comply with the diverse legal regimes.  Drawing from the principles of the GDPR, the PDPL shares many similarities. Yet, it brings its unique characteristics, affecting procedures, legal bases, and

Read More »
Governance Program
ciso

ISO/IEC 27001:2022 Updates

ISO/IEC 27001 is widely known as the de facto information security standard that specifies the requirements for establishing, implementing, maintaining, and continually improving an information security management system.   The first version of ISO/IEC 27001 was published in 2005, which evolved from the BS 7799 standard. In the final months of the second iteration published in 2013, the updated version was

Read More »
Compliance

Leadership and Culture in Data Governance and Data Protection

Introduction We are undergoing a technological revolution that is unlike anything we have experienced before. The speed of the disruption to almost every industry is not easy to anticipate yet we see evidence of the impact everywhere. It is changing the way we live and work – and Covid-19 is likely to accelerate this digitization. Digital transformation, and with it

Read More »