Privacy & DPO Services

One end-to-end privacy service: an external Data Protection Officer (DPO), practical privacy consulting and privacy surveys — from mapping and risk analysis through procedures, Privacy by Design and ongoing compliance.

DPO Privacy Consulting Privacy Survey Amendment 13
Book a privacy call

Marcotech brings its privacy services into a single track: an external Data Protection Officer (DPO), practical privacy consulting and in-depth privacy surveys. It takes organizations from data mapping and gap analysis, through policy, procedures and Privacy by Design, to Amendment 13 readiness — building privacy as a measurable, ongoing business process rather than a one-off project.

What’s Included

  • Mapping of databases, processing activities and personal-data interfaces (RoPA).
  • Identifying personal and sensitive data types, data populations and purposes of use.
  • An annual privacy and compliance work plan.
  • Risk analysis for data subjects, ranked by severity and likelihood.
  • A prioritized 30/60/90-day remediation plan.
  • Review of the privacy policy, terms of use, consent forms and privacy notices.
  • Defining Privacy by Design principles for new projects and products.
  • Review of collection, use, sharing, retention and deletion of personal data.
  • Review of access rights, retention, deletion, backups and transfers to vendors.
  • Procedures: retention and deletion, data-subject requests, privacy incidents, vendors and access rights.
  • Vendor management, data transfers, contracts and privacy addenda.
  • Targeted support for sensitive projects: CRM, HR, marketing, BI, cloud and AI.
  • Support for management, legal, IT, security and HR.
  • Privacy awareness training for employees and managers.
  • Amendment 13, GDPR and data-security-regulation readiness.
  • Drafting database definition appendices as needed.
  • Periodic management reports with status, risks, KPIs and a treatment plan.

Client Deliverables

Deliverable Details
DPO Roadmap 30/60/90-day and annual work plan.
RoPA / Data Inventory Processing records, database mapping, owners and vendors.
Privacy Survey Report Executive survey report plus a technical/operational appendix.
Privacy Risk Register Privacy risk register with ranking and prioritization.
Heat Map Visual risk map for management.
Remediation Roadmap A 30/60/90-day action plan.
Gap Memo A focused gap document by area of activity.
Privacy Policy Review Policy review with rewrite recommendations.
Procedure / Policy Pack Procedures and policies: data-subject rights, deletion, privacy incidents.
Project Checklist (PbD) A Privacy by Design questionnaire for new projects.
Vendor Privacy Checklist Questionnaire and controls for vendors and third parties.
Executive / Management Report Executive summary and periodic report: gaps, risks and progress.

Amendment 13 Readiness Check

A short call to assess readiness, data types and the recommended next steps.

Book a privacy call

Service Packages

Essentials
Organizations wanting a fast gap map
Kick-off call, initial mapping, gap report and a short roadmap.
Growth
Growing organizations, or pre-audit / pre-investment
Full survey, policies and procedures, Privacy by Design, vendors, training and a 90-day plan.
Enterprise
Organizations with significant data operations
Ongoing external DPO, heat map, management reporting, KPIs, project support and periodic control.
Who it’s for
  • Organizations required to appoint a DPO, or without an internal DPO that want external expertise.
  • Organizations facing an audit, funding round, certification, tender or an enterprise customer.
  • Organizations deploying a new system or responding to a regulatory change.
  • Marketing teams and service centers using CRM, BI or AI on personal data.
  • Organizations planning a new product or process that touches personal data.
  • SaaS, fintech, healthcare, HR tech, retail and e-commerce companies.
  • CISOs, legal counsel, operations executives and managers who want a clear picture.
Regulations & Frameworks
Amendment 13 Israeli Privacy Law Privacy by Design Data Security Regs GDPR ISO 27001 NIST
Why Marcotech

Not theoretical legal advice, and not only technical security - we connect privacy, cyber, processes, governance and hands-on implementation.

Check what your organization needs

Not sure what your organization needs? Leave your details and we’ll run a short fit call to review readiness, data types and recommended next steps.

The details you provide will be used to handle your request and contact you. Providing details is voluntary, but without the required fields we may be unable to respond. Do not submit passwords, access keys, or sensitive information that is not needed. Further information is available in our Privacy Policy.

Book a privacy call