Skip to content
HEM Bilişim
All services

Software

Privacy by design

We take the personal data decisions at the very start of new systems and remove the cost of fixing them later.

  • KVKK
  • GDPR
  • ISO/IEC 27701

Adding data minimisation or a retention period after a system is live costs many times more than designing it in. Decisions taken at the design stage remove that cost.

Scope

01

Data minimisation decisions before development

02

Retention, anonymisation and masking design

03

Placing consent and notice flows into the interface

04

Assessing whether a DPIA is required

What we deliver

Privacy design note

Data flow and retention diagram

Consent flow design in the interface

DPIA report where required

How we proceed

The process for this service

1

Data decisions

Whether each field is really needed is questioned; unnecessary fields are removed up front.

2

Retention design

Retention, masking and anonymisation decisions go into the data model.

3

Interface flow

Notice and consent are placed as a natural part of the interface.

4

Assessment

Where high-risk processing exists, an impact assessment is carried out.

Questions about this service

See where you stand in 20 minutes

The free initial assessment maps your current state and tells you which step should come first. You are not committed to anything afterwards.

Look at it yourself first

A twenty-five question KVKK compliance test with per-area scores and a priority recommendation. No sign-up.

Start the compliance test

Let's look together

We discuss your current state and work out which step comes first and how long it takes.

Request a conversation