Peleg & Co. AI
עברית Book a Call
Fractional DPO

Fractional DPO: privacy compliance,
backed by real security experience

Years of hands-on CISO experience, a direct and relevant foundation for the Data Protection Officer role.

⚡ Book an Intro Call 💬 WhatsApp

Relevant background, not generic training

Years as a hands-on CISO inside an organization, including risk management, information security, and regulatory compliance. The DPO role requires exactly this understanding: how personal data is collected, stored, protected, and when it's exposed to risk. This isn't training from a course, it's experience from the field.

Organizations processing personal data at meaningful scale need a real privacy officer, but aren't always at a size that justifies a full-time internal role.

What's included

📜

Privacy law compliance

Reviewing and updating processes to meet Israeli privacy law and its regulations.

🗂️

Data mapping

Identifying personal data stores, classifying sensitivity, and documenting processing activities.

📞

Point of contact

Responding to employee and customer privacy inquiries, documenting handling.

🤖

Privacy in AI projects

Reviewing privacy implications of AI system implementation, including call recording retention.

👥

Team training

Raising privacy awareness across the organization, including dedicated training.

📈

Flexible scope

Hours scaled to the scale of data processing and risk level.

Separation of duties: DPO, not CISO, for the same organization

Worth knowing: DPO and CISO roles require separation of duties, sometimes even a regulatory conflict of interest. A single organization cannot fill both roles with the same person simultaneously. If you need both roles, we'll structure a working arrangement that respects that separation.

Frequently asked questions

What is a fractional DPO?

A fractional DPO (Data Protection Officer) works with an organization at a flexible hourly scope, not full-time. They own compliance with privacy law and regulations, and serve as the point of contact for privacy-related inquiries.

What background is relevant for the DPO role?

A background of years as a hands-on CISO inside an organization, including risk management, information security, and regulatory compliance. This is a direct and relevant foundation for the DPO role, which requires deep understanding of how data is collected, stored, and protected.

Can a fractional DPO also serve as CISO for the same organization?

No. These roles carry built-in separation of duties and sometimes a regulatory conflict of interest. A separate person is required for each role within the same organization.

How many hours per month does a fractional DPO work?

It depends on the scale of personal data processing and the risk level. Scope is set based on actual need, not a fixed template.

Who is a fractional DPO suited for?

Organizations that process personal data at a scale requiring a privacy officer, but aren't yet at a size that justifies a full-time internal role.

Let's talk about your privacy program

A short intro call, no cost.

⚡ Book an Intro Call 💬 WhatsApp