background

Personal Data Protection in Lithuania under GDPR and DORA

Personal Data Protection in Lithuania under GDPR and DORA

As an EU member, Lithuania ensures uniform data protection rules, fostering trust among partners and clients. Compliance helps avoid fines and litigation related to data processing.

GDPR regulates the collection, storage and use of personal data of EU residents. DORA is an EU regulation for the financial sector, focusing on ICT risk management, including cybersecurity.

Who it applies to

Which businesses need to consider GDPR and DORA

Processing data of EU residents

If your business processes information about EU residents, including customer or employee databases

Video surveillance and mailing lists

When using video surveillance or online mailing lists that collect personal data

Companies outside the EU

For companies working with data of EU residents — an EU representative is required

Financial sector

DORA additionally applies for managing ICT risks, incident oversight, and resilience testing

Compliance conditions

Conditions for GDPR and DORA compliance

Internal documents

Developing and maintaining a privacy policy and data processing procedures

Data storage

Storing personal data in compliance with the law, considering sources of collection and transfer to third parties

Data Protection Officer (DPO)

Appointing a person responsible for data protection and responding promptly to requests or complaints

Audit

Assessing the data collected, its type, sources and storage methods

ICT risk analysis

Including encryption, incident reporting and supplier contracts

EU representative

For companies outside the EU — having an authorized data representative

Consequences

Possible consequences of non-compliance

Fines

Up to 2% of the company's annual turnover

Inspections

By state authorities based on complaints from clients or users

Lawsuits

For unauthorized use of employee or client data

Loss of partnerships

From companies requiring confirmation of compliance with data protection rules

Our support

Our support services

Data protection audit

Conducting an audit and compliance assessment, including ICT risk analysis for the financial sector

EU representative

Acting as your data protection representative in the EU

Document drafting

Drafting a privacy policy, processing procedures and other documents

Legal assessment

Legal assessment of potential conflicts and data-related risks

Consultations

On all aspects of GDPR, DORA and integrating these regulations into your business

Contact us

Ready to ensure GDPR and DORA compliance?

Our team of lawyers will simplify the process for you. Let us handle the details so you can focus on growing your business in Lithuania.

background

Contact Us

Have a Question?

You can fill the form, call us, write an email or text a message.