Personal Data Protection Attorney
Processing of Personal Data and Legal Framework
The processing of personal data must comply with the Law on Personal Data Protection and the fundamental rights of citizens to privacy. In practice, this means that any legal or natural person who collects, uses, or stores personal data must have a clear legal basis and act in accordance with the following principles:
- lawfulness
- transparency
- purpose limitation
Legal Protection in Case of Rights Violation
In cases of unauthorized collection, use, or disclosure of personal data, it is possible to initiate legal proceedings to protect rights, including:
- before the Commissioner for Access to Information of Public Importance and Personal Data Protection
- through the courts
Drafting Legal Documents for Online Business
As part of the services of a personal data protection attorney, we offer drafting of documentation for websites in compliance with the law, including:
- privacy policies
- terms of use
- cookie policies
- disclaimer statements
- other legal documents that accompany online business
Depending on the nature of the business, the documentation is also prepared in accordance with the GDPR when processing data of EU citizens.
Support in Proceedings and Regulatory Compliance
The Rako Law Office provides legal support in:
- proceedings before the Commissioner
- proceedings before competent courts and authorities
- drafting comprehensive documentation to comply with the Law on Personal Data Protection and GDPR
The documentation includes:
- internal policies
- privacy statements
- website policies
- other documents regulating the processing and protection of personal data
Frequently Asked Questions About Personal Data Protection
Below you can find answers to the most frequently asked questions regarding personal data protection and the application of relevant laws in Serbia:
Personal data is protected in accordance with the Law on Personal Data Protection, which defines the rights of individuals and the obligations of those who process data. Individuals whose data has been used unlawfully have the right to access, correct, delete, and object to the processing of their data.
The procedure is initiated by submitting a complaint to the Commissioner when there is suspicion that the right to personal data protection has been violated. The complaint must be submitted in written form, including a description of the violation and any available evidence.
An individual may file a lawsuit with the competent court to protect their rights if they believe their personal data protection rights have been violated. The court may order a ban on further processing, require the deletion of data, or award compensation for damages.
A website must include properly aligned legal documents such as a privacy policy, terms of use, cookie policy, and a disclaimer. These documents regulate how visitors’ personal data is collected and processed, in accordance with the Law on Personal Data Protection and, when applicable, the GDPR.
The Rako Law Office provides assistance in preparing legal documentation to ensure compliance with the Law on Personal Data Protection, analyzing legal risks in data processing, drafting legal acts, and representing clients in proceedings before the Commissioner or the court related to the protection of personal data.