Data protection obligations affect everyday decisions about systems, employees, customers, clinical information and connected devices. MEDAGENT provides external Data Protection Officer expertise and practical GDPR support to help your organisation identify risk, build workable controls and maintain evidence of compliance.
When is a Data Protection Officer required?
Under the GDPR, organisations must appoint a DPO in defined circumstances, including when core activities involve large-scale processing of sensitive data or large-scale, regular and systematic monitoring of individuals. Public authorities also generally require a DPO.
A DPO can be an employee or an external service provider. The role must have appropriate expertise, independence, access to senior management and the resources needed to perform its tasks.

