Total revision of the Data Protection Act

The new Swiss Data Protection Act (DPA) will enter into force on September 1st, 2023. The changes introduced by this total revision of the law will impact financial institutions. Thanks to our combined expertise in banking law and European data protection law (RGPD), we assist companies and financial institutions in particular in implementing and monitoring the new requirements introduced by the DPA. We are thus able to propose a compliance specifically adapted to the financial sector, taking into account its needs and constraints. Our partnership with Aurore Chasseloup Léauté, co-founder of the EMROADS law firm in Paris and specialist in European data protection law (RGPD), allows us to efficiently address the DPA in an international context.

Impacts of the new DPA on financial institutions

Team

poetique@373-avocats.com

+41 22 310 53 72

PO_traite_round

Pierre-Olivier Etique

Pierre-Olivier Etique has been advising banking and financial institutions for over 15 years. In particular, he has implemented several large-scale regulatory projects for banks. Pierre-Olivier regularly deals with data protection issues, whether from a regulatory or a contractual perspective (e.g. implementation of outsourcing projects, review of contracts involving cross-border data transfers, analysis of data transfer issues within financial groups, review of General Business Terms and Conditions from a banking secrecy and data protection perspective, Cloud Banking).

AURORE_traite_round

Aurore Chasseloup Léauté

Aurore has been practicing as a lawyer for more than 15 years and assists companies, in all sectors, in the implementation of their data processing in respect of the obligations provided by the GDPR: integration of contractual clauses relating to the processing of personal data, mapping of data flows, establishment of data processing registers, data protection charters, information technology charters, registers of security breaches, assistance in carrying out impact analyses, awareness-raising and training of staff on the processing of personal data.