Personal Data Protection in Lithuania under GDPR and DORA
Personal Data Protection in Lithuania under GDPR and DORA
As an EU member, Lithuania ensures uniform data protection rules, fostering trust among partners and clients. Compliance helps avoid fines and litigation related to data processing.
GDPR regulates the collection, storage and use of personal data of EU residents. DORA is an EU regulation for the financial sector, focusing on ICT risk management, including cybersecurity.
Who it applies to
Which businesses need to consider GDPR and DORA
Processing data of EU residents
If your business processes information about EU residents, including customer or employee databases
Video surveillance and mailing lists
When using video surveillance or online mailing lists that collect personal data
Companies outside the EU
For companies working with data of EU residents — an EU representative is required
Financial sector
DORA additionally applies for managing ICT risks, incident oversight, and resilience testing
Compliance conditions
Conditions for GDPR and DORA compliance
Internal documents
Developing and maintaining a privacy policy and data processing procedures
Data storage
Storing personal data in compliance with the law, considering sources of collection and transfer to third parties
Data Protection Officer (DPO)
Appointing a person responsible for data protection and responding promptly to requests or complaints
Audit
Assessing the data collected, its type, sources and storage methods
ICT risk analysis
Including encryption, incident reporting and supplier contracts
EU representative
For companies outside the EU — having an authorized data representative
Consequences
Possible consequences of non-compliance
Fines
Up to 2% of the company's annual turnover
Inspections
By state authorities based on complaints from clients or users
Lawsuits
For unauthorized use of employee or client data
Loss of partnerships
From companies requiring confirmation of compliance with data protection rules
Our support
Our support services
Data protection audit
Conducting an audit and compliance assessment, including ICT risk analysis for the financial sector
EU representative
Acting as your data protection representative in the EU
Document drafting
Drafting a privacy policy, processing procedures and other documents
Legal assessment
Legal assessment of potential conflicts and data-related risks
Consultations
On all aspects of GDPR, DORA and integrating these regulations into your business
Contact us
Ready to ensure GDPR and DORA compliance?
Our team of lawyers will simplify the process for you. Let us handle the details so you can focus on growing your business in Lithuania.
Contact Us
Have a Question?
You can fill the form, call us, write an email or text a message.