Skip to content
Back to home

Solutions

Data & Privacy

We help organizations understand where their data lives, how it is processed and how technology can support privacy, governance and compliance.

  1. Collect
  2. Process
  3. Store
  4. Share
  5. Delete

What we do

Data & Privacy

Preparing for Ley 21.719

We identify what the new data protection law requires of you and provide legal support through the adaptation.

  • Ley 21.719
  • Legal accompaniment

Data map and RAT

Know what personal data you process, where it is, why it is used and who it is shared with.

  • Data mapping
  • Processing activities
  • RAT
  • Data classification

Governance and privacy by design

Rules, owners and criteria so every new project starts compliant.

  • Data governance
  • Privacy by design
  • Data lifecycle

Controls and rights

Technical controls and a working process to handle data subject rights.

  • Privacy controls
  • Access and rights management
  • Technology implementation

How it works

  1. 1

    Assessment

    Interviews and system reviews to identify every personal data processing activity.

  2. 2

    Record and analysis

    We build the RAT and assess risks, legal bases and transfers.

  3. 3

    Adaptation

    We adjust policies, supplier contracts and technical controls.

  4. 4

    Operation

    Rights requests, retention and compliance evidence, up and running.

Record of processing · RATRAT-014

Customer onboarding

Risk · Medium
  1. Collect
  2. Process
  3. Store
  4. Share
  5. Delete
Purpose
Identity verification and contract execution
Legal basis
Contract · Legal obligation
Data categories
Identification, contact, financial
Systems
CRM · Core banking · Document store
Retention
Contract term + statutory period
Transfers
Cloud provider (US) · safeguards documented

Data & privacy

Your data has a lifecycle.

NEXLEX helps organizations understand their data and build the governance and technology required to manage it responsibly.
LawGovernanceSecurityAccessRetentionPrivacyCollectProcessStoreShareDeleteCollect

Privacy controls

  • Purpose definition
  • Legal basis
  • Transparency notices
  • Data minimization

Technology

  • Consent capture
  • Form-level minimization
  • Source tagging

Select a stage

How we approach it

  1. UnderstandRegulation, business requirements and risk.
  2. AssessCurrent state and gaps.
  3. DesignControls, processes and technology.
  4. ImplementSystems, automation, governance and evidence.
  5. MonitorContinuous visibility and improvement.