• Zos_Kia@lemmynsfw.com
    link
    fedilink
    English
    arrow-up
    0
    ·
    17 days ago

    Appropriate means running a risk assessment and deciding accordingly

    The risk assessment doesn’t require the company to assess the reliability of international diplomatic relationships. Having your data on EU soil (even under the care of a US company) is enough for compliance.

    • biofaust@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      16 days ago

      I assure you that is not true. Even in my “mild” domain of marketing analytics, vendors exist that are EU companies with EU storage also run by EU companies or they offer on-premise deployment. And serious companies with users that may signal personal details through behavioral data seek such solutions.