complianceofficer.eu · Office

The Compliance Officer Office for the European Union

Training, implementation kits, regulatory alerts and help-desk support for the Compliance Officer function — one place, every Member State.

Regulated functions

Statutory roles, held or supported

Four functions that EU and national law require organisations to designate. We perform them externally where the law allows it and support the internally designated person where it does not.

Data Protection Officer

External DPO under the GDPR for public bodies, companies and groups, with offers by jurisdiction.

Information Security Officer

Information security and cybersecurity officer for NIS2, DORA and national rules.

Compliance Officer

The compliance function on retainer, or support for the internally designated officer.

Whistleblowing Officer

Reporting channels operated externally and support for the impartial follow-up of reports.

Language & jurisdiction · Língua e jurisdição · Idioma y jurisdicción

Data Protection Officer services in your language

Choose your country or region to see the DPO offers for public bodies, private organisations, shared public arrangements and corporate groups, written under the applicable law.

Portugal

Encarregado de Proteção de Dados · RGPD e Lei n.º 58/2019

Brasil

Encarregado de Dados · LGPD e normas da ANPD

España

Delegado de Protección de Datos · RGPD y LOPDGDD

European Union

Data Protection Officer · GDPR Articles 37 to 39

Países da CPLP

Panorama da proteção de dados nos países de língua portuguesa

Iberoamérica

Panorama de la protección de datos en los países de lengua española

International

DPO and equivalent roles beyond the EU

Regulatory scope

EU Regulatory Domains

Key EU instruments and their national transposition.

Data Protection

Regulation (EU) 2016/679 (GDPR)

Cybersecurity (NIS2)

Directive (EU) 2022/2555 (NIS2)

Digital Operational Resilience

Regulation (EU) 2022/2554 (DORA)

Artificial Intelligence

Regulation (EU) 2024/1689 (AI Act)

Whistleblower Protection

Directive (EU) 2019/1937

Anti-Money Laundering

AML package & Regulation (EU) 2024/1624; AMLA

Anti-Corruption

Directive (EU) 2026/1021

Sustainability (CSRD/CSDDD)

CSRD and CSDDD, as amended by Omnibus I

Pay Transparency

Directive (EU) 2023/970

Corporate Governance

EU company law & governance instruments

Third-Party & Supply Chain

CSDDD & sectoral due diligence

Digital Services & Markets

Regulations (EU) 2022/2065 (DSA) & 2022/1925 (DMA)

Market focus

12 Priority Sectors

The sectors where EU and national compliance obligations concentrate, and where we focus our expertise.

Public Administration

DPO, NIS2, whistleblowing and integrity in the public sector

Financial Services

DORA, AML and data protection for banks, insurers and investment firms

Real Estate & Investment Funds

AML, DORA for fund managers and tenant and investor data

Healthcare & Life Sciences

Health data, NIS2, AI in medical devices and the EHDS

Energy & Utilities

NIS2, critical entities resilience and sustainability

Transport & Logistics

NIS2, critical entities and supply-chain security

Manufacturing & Industry

NIS2, Cyber Resilience Act and supply-chain due diligence

Hospitality & Tourism

Guest data, CCTV, whistleblowing and pay transparency

Digital & Telecoms

NIS2, DSA and DMA, AI Act and DORA for ICT providers

Education & Research

Data of minors, AI in education and research security

Retail & Consumer

Customer data, marketplaces, cash limits and supply chain

Professional Services

AML gatekeepers, client confidentiality and AI use

What we deliver

Services & Products

Nine ways to assess, implement, train, monitor and evidence compliance, from a free first check to day-to-day support.

Compliance Assessment

Start with the free Express check and receive a prioritised action plan for your organisation.

Implementation Kits

Policies, procedures, registers and templates ready to adapt, for each of the twelve EU domains.

Solutions by Challenge

Practical answers to the recurring compliance problems of EU organisations, with one integrated method.

Training & Capacity

Workshops, certification and mentoring for teams, management bodies and compliance officers.

CAP 2026 Programme

The Compliance & Accountability Plan: continuous training in 13 vectors over 52 weeks.

Resources Library

Checklists, templates, manuals, glossary and cases for everyday compliance work.

Alerts & Repository

Weekly alerts on EU and national changes, with a regulatory calendar and a practical repository.

Compliance Secretariat

Records, regulatory calendar, minutes and authority reporting that produce auditable evidence.

Help-Desk

Practical answers from specialists to the day-to-day compliance questions of your teams.

CAP 2026 — Compliance & Accountability Plan

13 vectors · 52 weeks · continuous training.

Subscribe to the Regulatory Alerts

Receive weekly the changes applicable across the EU.