• (312) 971-4085
  • info@litwinkach.com

Data Privacy and Security

Responsible Attorneys: Jeffrey Drake (Lead), Drew Zerdecki, Perry Gattegno

Data privacy law has gone from a niche compliance area to a central business risk in a very short time. If your company collects, uses, or shares personal data — and nearly every company does — you need to understand your obligations and build practices that meet them.

We help companies navigate the patchwork of state and federal privacy laws, build compliance programs tailored to their specific business model, and manage the legal side of data incidents when they occur. For companies involved in M&A activity, we conduct privacy diligence on both the buy and sell side — regulatory exposure, breach history, and data governance practices are all increasingly material to deal valuation and structure.

WHAT WE HANDLE
  • Privacy program assessment and development

  • Privacy policy and terms of service drafting

  • CCPA/CPRA compliance

  • GDPR compliance

  • HIPAA compliance

  • TCPA compliance

  • Illinois BIPA compliance

  • COPPA compliance

  • Vendor data processing agreements

  • Data breach response and notification

  • Privacy due diligence in M&A transactions

WHO WE WORK WITH
  • Companies across industries that collect consumer or employee data (including healthcare, fintech, SaaS, e-commerce, and digital media)
  • Any business involved in M&A where data privacy is a diligence concern