Privacy breach: the unauthorised publication of a patient's images.
GOCopyright Leexè 2026 | riproduzione riservata
Introduzione al sito Leexè
Personal data is a strategic asset and, at the same time, one of the most significant liability risks for any organisation. We advise on GDPR compliance, DPIAs, international transfers, data breach management and dealings with the Italian Data Protection Authority, in a landscape reshaped by AI, profiling and automated decision-making.
Personal data is the most valuable resource of the digital economy, and protecting it is both a binding regulatory obligation and a strategic investment in stakeholder trust. The General Data Protection Regulation (GDPR, Regulation (EU) 2016/679) and Legislative Decree 196/2003, as amended, impose on organisations a comprehensive set of obligations: from maintaining the Register of Processing Activities to drafting compliant notices and privacy policies, from the structured management of data breaches within the 72-hour window under Article 33 GDPR, to appointing a Data Protection Officer (DPO) and data processors.
Artificial intelligence exponentially amplifies privacy issues on every front: advanced user-profiling systems, large language models trained on personal data, biometric recognition, continuous geolocation and recommendation systems are day-to-day operational frontiers for our team, which can engage effectively with IT teams and data scientists thanks to integrated technical and legal expertise. We conduct complex Data Protection Impact Assessments (DPIAs) under Article 35 GDPR, handle proceedings before the Italian Data Protection Authority (Garante), and closely follow the evolving case law of the Court of Justice of the EU on international data transfers to third countries.
Related insights
Copyright Leexè 2026 | riproduzione riservata