Assessment
POPIA Gap & Readiness Review
Independent review of the current governance position, material gaps, implementation priorities and recommended remediation roadmap.
Data governance
ROPA & Data Mapping Support
Support to identify processing activities, structure the Record of Processing Activities, clarify data flows and improve the quality of existing ROPA records.
Privacy risk
PIIA / Privacy Risk Assessments
Scoped assessment of higher-risk processing, new projects, technologies or data uses requiring a more formal privacy-impact review.
Third parties
Operator & Supplier Privacy Reviews
Review operator relationships, data-protection terms, safeguards, cross-border elements and identified privacy-control gaps for defined suppliers or service arrangements.
Transfers
Cross-Border Data Transfer Review
Assess defined international data flows, POPIA section 72 considerations, contractual safeguards and supporting transfer-governance requirements.
Documentation
Policy, Notice & Procedure Review
Review or develop defined POPIA governance documents, privacy notices, procedures or operational guidance against the organisation’s actual processing context.
Incidents
Security Compromise / Breach Support
Practical privacy-governance support following a suspected or confirmed compromise, including assessment, response coordination and notification-readiness support where appropriate.
People
POPIA Training & Awareness
Scoped awareness sessions, management briefings, Information Officer guidance or role-relevant training tailored to the organisation’s privacy risks and responsibilities.
Assurance
Client & Due-Diligence Privacy Support
Support with client privacy questionnaires, procurement assessments, privacy due diligence and evidence preparation where an organisation must demonstrate its POPIA governance position.
Governance
Information Officer Advisory Support
Defined advisory support for Information Officers or Deputy Information Officers on governance decisions, oversight, prioritisation and privacy-programme maturity.
Remediation
Targeted Compliance Remediation
Implementation support against an agreed set of audit, client, regulator, legal or internal review findings rather than a full programme implementation.
Project privacy
Privacy-by-Design Project Review
Privacy review of a defined new system, process, technology implementation, data use case or business change before or during deployment.
Scoped consulting is quoted separately. There is no standard published price because the effort depends on the number of entities, processing activities, systems, suppliers, jurisdictions, documents, stakeholders and deliverables involved. A short scoping discussion is used to define the work before a proposal is issued.
Discuss a scoped engagement →