Implement the Swiss Data Protection Law with ease

The new Swiss Data Protection Act (nDSG) has been in force since 01.09.2023 and places high demands on how companies must handle personal data. With five years of data protection expertise, SECJUR AG is your trusted partner for effortlessly meeting the demands of the new nDSG regulations.

Up to 67% faster to Swiss Data Protection compliance with SECJUR's automation platform

More than 50% cost savings compared to conventional consulting

Certified data protection experts with many years of experience

AUTOMATED COMPLIANCE
SINGLE SOURCE OF TRUTH

SECJUR customers are in good company

Your partner for automated compliance

With the recently revised Data Protection Act, the Swiss business world is facing new challenges.
As an experienced partner for the practical implementation of data protection law, SECJUR AG supports companies in implementing the new requirements.

SECJUR AG
Weltpoststrasse 5
3015 Bern 

Swiss Data Protection Law vs. the GDPR – an Overview

External data protection officer

In the EU, companies are required to appoint a data protection officer, while in Switzerland this remains optional.

Our legal experts support companies in implementing the revised law in departments and processes.

Right to information of affected persons

The revised Data Protection Act in Switzerland grants affected individuals the right to request information about the data collected and processed. However, it remains unclear what specific information is included. In comparison, the EU GDPR sets out more detailed criteria for the obligation to provide information.

Obligation to report data breaches

While both pieces of legislation provide for the introduction of a data breach notification obligation, they differ with regard to the time limit. The revised data protection law in Switzerland does not specify a clear time limit, which gives companies some flexibility in reporting data breaches.

Data transmission to foreign countries

With regard to the transfer of data abroad, the requirements of the revised data protection law in Switzerland are stricter than the EU's GDPR. Companies must not only specify the recipient countries, but also disclose the data security guarantees used. This ensures that cross-border data transfers are adequately protected.

The easy way to data protection compliance

Our intuitive data protection solution combines all the tasks that arise (such as VVT, TOM or data subject inquiries) with expert advice from real professionals in an intuitive system that even data protection laymen can understand.

Up to 67 % faster to Swiss Data Protection Law Compliance
Thanks to intelligent automation of essential work steps

Up to 55 % cheaper
Do away with expensive consultants and billing by the hour

Save your internal resources for your core business
Focus on things that matter to you most

Get a quote

Set data protection on autopilot

Our data protection solution provides you with a comprehensive overview of all relevant processes and documents. This means you have everything in one place and can respond quickly and directly when necessary. The intuitive user interface of our platform is designed so that even data protection beginners can quickly find their way around it. This means you are ideally equipped for all data protection topics:

Save time with the Record of Processing Activities (RoPA): Templates and automation reduce the manual effort to a minimum.

Report data protection incidents directly: Our experts will review the incident and support you in taking further action.

Contract management: Upload your data protection contracts and sit back. SECJUR takes care of the contract review.

Get a quote

Your external data protection officers

Our data protection experts know the technical specifics of your industry and are able to uncover risks inherent in your business model and efficiently solve project-related compliance obstacles. With our data protection experts, you are in the best hands when it comes to protecting your data and complying with legal regulations.

TÜV and ISACA certified experts

60+ industries covered by our expertise

Get a quote
Case Studies

Our customers about SECJUR

ISO 27001 ohne Excel – Purple22 geht neue Wege mit SECJUR

Dank SECJUR konnten wir unser ISMS schnell und zuverlässig aufbauen. Wir haben zwei externe Zertifizierungsaudits bestanden und sind sehr dankbar für die Zusammenarbeit.

Mithilfe der tollen SECJUR Plattform wurde der Aufbau des ISMS zum Kinderspiel. Wir konnten schnell einen Einstieg in die Thematik finden und die notwendigen Schritte zur Zertifizierung systematisch abarbeiten. Die Automatisierung erspart uns enorm viel Zeit, die wir in Prozessverbesserungen investieren konnten. Wir fühlen uns zu jedem Zeitpunkt auch durch unseren persönlichen Consultant bei SECJR wirksam unterstützt.

Bei SECJUR haben wir genau das gefunden, was wir für den Bereich Datenschutz gesucht haben: ein für uns optimal passendes „Datenschutz-as-a-Service-Paket“, das unseren Anforderungen durch die Kombination eines Expertenteams mit der Online-Plattform Digital Compliance Office in jeder Hinsicht gerecht wird.

Dank SECJUR konnten wir schnell ein hochwertiges ISMS aufbauen, wie uns auch in den Zertifizierungsaudits bestätigt wurde. Unser zugewiesener Berater hat uns stets kompetent unterstützt - als wäre er ein Teil der Firma. Freuen uns auf die weitere Zusammenarbeit!

Sicherheit und Vertrauen sind der Kern unserer Marke. Wir freuen uns mit secjur einen Compliance-Partner an unserer Seite zu haben

ISO 27001 Without Excel – How purple22 Took a New Approach With SECJUR

Thanks to SECJUR, we have succeeded in building our ISMS quickly and reliably. We passed two external certification audits and are very thankful for the cooperation.

With the great SECJUR platform, building the ISMS was a breeze. We were able to quickly get an entry into the topic and systematically work through the necessary steps for certification. The automation saves us a lot of time, which we were able to invest in process improvements. We feel effectively supported at all times by our personal consultant at SECJUR.

With SECJUR, we have found exactly what we were looking for in the area of data protection: a "data protection-as-a-service package" that is ideally suited to us and meets our requirements in every respect through the combination of a team of experts with the online platform Digital Compliance Office.

Thanks to SECJUR, we were able to quickly build a high-quality ISMS, as confirmed in the certification audits. Our assigned consultant consistently provided expert support – as if they were part of the company. We look forward to continued collaboration!

Security and trust are at the core of our brand. With SECJUR, we are pleased to have a strong compliance partner at our side.

Your path to Swiss Data Protection Law conformity

With law firm

With SECJUR

14 hrs.

Gap Audit

Implementation

30 hrs.

Records of Processing Activity (RoPA)

5 hrs.

Technical & Organizational Measures (TOMs)

3 hrs.

Upload and review of contracts

20 hrs.

Other (e.g. data privacy statement, cookie banner)

Mit Kanzlei

Mit SECJUR

23 Std.

Status Quo Audit

Implementation

50 Std.

Verzeichnis von Verarbeitungstätigkeiten (VVT)

20 Std.

Technische und organisatorische Maßnahmen (TOM)

50 Std.

Vertragsprüfung

30 Std.

Andere (z.B. Datenschutzerklärung, Cookie-Banner)

Frequently asked questions

Informationen rund um das revidierte Datenschutzgesetz

What is the revised Swiss Data Protection Act 2023 and when does it come into force?

The revised Data Protection Act (revDSG) entered into force on September 1, 2023. It is a comprehensive revision of the Swiss Data Protection Act to improve data protection to the level of the EU General Data Protection Regulation (GDPR).

What changes does the new Swiss Data Protection Law bring?

The revised Swiss Data Protection Act brings several changes for companies in their handling of data, including the strengthening of the rights of natural persons, the introduction of "Privacy by Design" and "Privacy by Default" concepts, the obligation to conduct a data protection impact assessment, extended information obligations and reporting obligations in the event of data breaches.

Who is affected by the revised Swiss Data Protection Act 2023?

The revised Swiss Data Protection Act applies both to companies in Switzerland and to foreign companies that process data of Swiss persons. Companies based in the EU that process data of Swiss persons must also comply with the revDSG.

How does the revised Swiss Data Protection Act differ from the EU's GDPR?

Although Switzerland's new data protection regulation is essentially based on the EU's GDPR, there are some differences. Some of these differences include the option to appoint a data protection officer, the obligation to provide information to data subjects, the obligation to report data breaches without a specific deadline, and stricter requirements for data transfers abroad.

What are the consequences of violations of the revised Swiss Data Protection Act?

Violations of the revDSG can be sanctioned with fines of up to CHF 250,000. While the penalties are lower compared to the GDPR, data controllers in Switzerland bear a higher personal risk. Companies can also be ordered to pay if the person responsible for the offense in the company is unclear.

Compliance, completed: Automate Data Protection in Switzerland.

Get in touch