Conference Description
Key Takeaways
- Flagship privacy summit now in its tenth year, addressing GDPR maturity and EU AI Act enforcement
- Designed for Chief Privacy Officers, Data Protection Officers, legal counsel, and cybersecurity leaders
- Focus areas include cross-border data transfers, privacy-by-design, and AI governance frameworks
- Speakers from Meta, Adobe, Bosch, and Samsung Electronics
- In-person event held in Berlin, Germany, with hybrid attendance options
Introduction
The 10th Annual Privacy & Data Protection Summit convenes senior privacy professionals, legal counsel, and cybersecurity leaders in Berlin to examine the operational realities of data protection in an increasingly regulated environment. As organisations contend with maturing GDPR enforcement, the phased implementation of the EU AI Act, and persistent challenges around cross-border data flows, the summit provides a forum for examining practical approaches to privacy governance. The event is particularly timely given the convergence of artificial intelligence deployment with heightened regulatory scrutiny across European and global markets.
About This Event
Now marking a decade of programming, the Privacy & Data Protection Summit has established itself as a significant gathering for professionals responsible for organisational privacy strategy. The event combines case study presentations, interactive discussions, and structured networking opportunities designed for executive-level participants. Representatives from major technology and manufacturing organisations including Meta, Adobe, Bosch, and Samsung Electronics contribute to the programme, offering perspectives from companies operating at scale across multiple jurisdictions.
The summit takes place in Berlin, reflecting the city’s position within the European regulatory landscape. Hybrid attendance options accommodate participants unable to travel while preserving the networking value that distinguishes in-person gatherings.
Privacy Governance in an AI-Driven Regulatory Environment
A central theme running through the programme is the intersection of privacy governance with artificial intelligence deployment. The EU AI Act introduces compliance obligations that overlap significantly with existing data protection requirements, creating both complexity and opportunity for privacy teams. Organisations must now consider how traditional data protection impact assessments can evolve into dynamic risk assessment frameworks capable of addressing AI-specific concerns around automated decision-making, profiling, and algorithmic transparency.
Privacy-by-design principles, long established under GDPR, take on renewed importance as organisations embed AI capabilities into products and services. The summit examines how privacy engineering practices must adapt to address the particular challenges of machine learning systems, where data minimisation principles can conflict with model training requirements and where purpose limitation becomes more difficult to enforce across complex data pipelines.
Cross-Border Data Transfers and Data Sovereignty
Data localisation requirements continue to proliferate globally, complicating the operational reality for multinational organisations. The summit addresses the practical challenges of managing cross-border data transfers under evolving adequacy decisions, standard contractual clauses, and emerging national frameworks. For privacy leaders, these discussions move beyond legal interpretation into operational territory: how to architect systems that respect jurisdictional boundaries while maintaining business functionality.
Data sovereignty considerations increasingly influence technology procurement decisions, cloud architecture choices, and vendor management practices. Privacy teams find themselves collaborating more closely with IT and security functions to ensure that technical implementations align with regulatory commitments.
Integrating Privacy and Cybersecurity Functions
The traditional separation between privacy and cybersecurity teams is becoming increasingly difficult to maintain. Regulatory expectations around breach notification, security of processing, and accountability require coordinated responses that span both disciplines. The summit explores models for integrating these functions, examining reporting structures, shared metrics, and joint risk assessment methodologies that enable more coherent organisational responses to data protection challenges.
Demonstrating privacy return on investment remains a persistent challenge for privacy leaders seeking budget and executive support. Sessions address approaches to quantifying privacy programme value, developing meaningful trust metrics, and communicating privacy outcomes in terms that resonate with business leadership.
Who Should Attend
The summit is structured for senior professionals with direct responsibility for privacy strategy and implementation. Chief Privacy Officers, Data Protection Officers, and Chief Compliance Officers will find content aligned with their strategic concerns, while Privacy Engineering Leads and AI Governance Leads can engage with technical implementation discussions. Legal counsel, regulatory affairs specialists, and information security officers working in regulated industries or technology-driven sectors represent the core audience for this programme.
Building Resilient Privacy Programmes
Regulatory environments continue to shift, and privacy programmes must be designed for adaptability rather than static compliance. The summit emphasises building organisational capabilities that can respond to new requirements without requiring fundamental restructuring. This includes developing governance frameworks flexible enough to accommodate emerging regulations, training programmes that maintain workforce awareness, and technology investments that support evolving compliance needs. For organisations operating across multiple jurisdictions, this resilience becomes essential to sustainable privacy operations.

