Mikrocop is one of the first companies in Slovenia with a certified DPO
Sanja Žaubi, Mikrocop’s Data Protection Officer (or DPO), was one of the first in Slovenia to obtain additional qualification as a personal data protection expert. Having our own DPO is an important demonstration of our expertise in the field of personal data protection legislation and practice.
Sanja Žaubi is a lawyer who is among the first generation of personal data protection experts certified in 2018 under the qualification program conducted by Info Hiša in cooperation with the Official Gazette of the Republic of Slovenia. The program is registered in the Register of the Republic of Slovenia for Vocational Education and Training, while Info House is the only provider in Slovenia accredited grant supplementary qualifications for personal data protection experts.
Personal data protection begins with recognition of the simple fact that it is not the sole responsibility of a lawyer or the IT department, but something that concerns all the employees in the company and requires the participation of stakeholders from various fields. In Mikrocop, we act as controllers of personal data as well as contracted personal data processors for a range of clients, for which we process and store personal data. Thanks to our extensive professional experience, we are also able to advise clients on ensuring compliance in the field of data protection. In our estimation, the most successful clients are those who successfully integrate personal data protection. Therefore, besides certified personal data protection officers, our advisory team also includes a lawyer, a quality assurance expert, a security engineer, and an experienced business consultant.
The key challenges in ensuring the compliance of personal data protection lie in designing appropriate personal data management processes and establishing accountability for such processes. Companies often experience difficulties in ensuring the compliance of personal data protection because, under pressure from ongoing operations and implementation of business processes, they don’t establish a comprehensive overview of all the personal data they process, much less of the legal bases for data processing, storage periods, or individual rights. As a result, ensuring compliance with the GDPR is difficult and full of unknowns. In this case, choosing an appropriate advisor may be the right decision.