Professional background

About

Who is Olga Nielsen?

I am a tech lawyer graduated from the University of Copenhagen, also holding a Market Economist degree from the Business Academy in Aalborg.This education provided a comprehensive understanding of the business world, including how to start a business, marketing, and accounting.

The business background has been helpful in the legal profession, particularly in advising and creating customized services for specific target groups.

Why a lawyer?

I decided to pursue a career in law at the age of 14 or 15, I don’t remember the exact age.But at that time I was also interested in a career in the army or police force.Something about law and being a lawyer has fascinated me.

So, I became a lawyer.

Later I found out through numerology that it was destined to be, I guess 😊

After completing five years at the university and becoming a lawyer, I recognized that my approach was distinct due to my business and work experience and my practical approach to complex areas.I do not align with the “traditional” perception of a lawyer.

Those who have collaborated with me understand what I mean.

If you are interested to find out, please feel free to reach out.

Which area of law caught your interest?

My introduction to the fields of data protection and information security happened while working on a significant project in the public sector, and this was prior to GDPR.This experience allowed me to understand the intersection of legal, information security, and organizational processes.A perfect combination I must say.

I had already a lot of experience and training due to my previous education and jobs.

So, I discovered my passion for this area; its complexity and multidisciplinary nature resonated deeply with me and suited my personality perfectly.Since then, I have continually pursued further education and training, finding that as the field has grown more involved, my interest and enthusiasm have only increased.

Now I have more than 10 years of experience in the field of GDPR and InfoSec.I have worked among others with AI projects, data-driven marketing, and cookie compliance since 2018.Having my focus on the EU Digital Strategy, additional areas caught my interest: AI Act, NIS2, DORA, CER, Data Governance Act, Cyber Resilience Act, Data Act, Digital Services Act, European Health Data Space.I work with ISO-standards, NIST, CIS, ENISA standards.

Depending on the specific projects for which I am hired, either in an advisory capacity or as a hands-on project manager, I may also need to comply with other laws, including eIDAS, The Money Laundering Act, and the Public Administration Act.While my journey began with GDPR, it's not all about GDPR anymore.

Have you always been an external consultant?

I transitioned rapidly from employment in the public sector to establishing my first consulting firm.

In 2016, I became the first Data Protection Officer (DPO) in Denmark to offer DPO as a Service.I take pride in this achievement, particularly because, at that time, few people understood the role of a DPO or were familiar with the General Data Protection Regulation (GDPR).The concept of GDPR was known to some extent, but its exact implications and implementation methods were not widely understood.

Presently, many organizations still find it challenging to fully embrace and respect the role of a DPO, even those of considerable size.

Why self-employed?

I made a deliberate decision to alternate between being employed in-house and self-employment as a means of accelerating my learning curve.

This is how I felt to be the perfect solution for me.

Currently, I find that I have greater satisfaction from being self-employed.

Being hired to fix a problem in the organization is quite a challenge but also an amazing opportunity to apply years of experience, and see a final result of your advice or hands-on solutions – this motivates me a lot.

What are the advantages of pursuing a career in this field?

If you choose to work in this field, you can be very certain that you can’t get bored. This field is ever-evolving, and every single day there are many challenges and new opportunities to learn even more. You work from hands-on to strategic data compliance and work closely with the organization at every level. Working in this field you will play a crucial role in safeguarding individuals’ personal data and ensuring organizational compliance with regulations.

This field is a multidisciplinary field, a mix of legal, technological and organizational aspects. You must stay updated with the latest developments and that helps your continuous learning and professional growth.

What are the benefits of this job and also being self-employed?

I value the flexibility to manage my time, select my projects, and choose my collaborations.The more complex area or project the better it is for me.

I experience increased motivation and job satisfaction by engaging in work that aligns with my personal interests, passions, and area of expertise.The necessity to remain engaged and continually improve my skills aligns well with my personality and current stage of life.

I now prioritize my own physical and mental health before saying yes to a project.

However, I must say that it has not always been this way.

What are the disadvantages of this job?

Well, like anything else, there are always pros and cons.Now it depends on how you want to look at it.

And in this profession, there are cons on both professional and personal sides.

The industry has changed a lot.I experience a lack of consultants that are engaged, not as much as me, I don’t expect that, but at least share the same passion.I appreciate a lot when through circumstances I find people with the same smile on their faces when talking about this field.However, it is not only about the passion, it is also a lot about the level of expertise and not being accountable for the poor advice that is given out there.This trend often leaves companies with inadequate compliance guidance.My advice for companies is to perform due diligence and hire insured professionals.

On a personal note, I experienced burnout.I have not spoken publicly about this, as it has been a challenging period in both my professional and personal life.It is often said that individuals do not leave their company or job, but rather leave due to poor management.And maybe it is not always true.I guess we all have a responsibility for our own mental health.It has been challenging for me to acknowledge burnout and follow my doctor's advice to take a break.Instead, I moved to another demanding in-house job and very soon after I found myself attending interviews for other positions.It became increasingly evident that a personal transformation was essential for me to either continue in this field or explore other opportunities.

Although efforts were made to hide burnout from colleagues and contacts, the condition worsened.Therefore, it is important to listen to your body and recognize when it is necessary to take a step back.

It is acceptable to do so.I am thankful now that I’ve experienced that – I value everything much more than before.I exercise regularly and I meditate a lot.

I find those very helpful for my personal and professional life.

What does your colleagues say about you?

Better to read their own words:

“Olga is an open and warm person, whose human view embraces everyone. A special remark: Her sense of humor is fantastic! When chatting on coffee break, when just saying a quick hello while rushing from meeting to meeting or back from lunch break… And I miss her smile and sparkling laughter!”

“I have had the pleasure of working closely with Olga, and without a doubt, I can confidently say that she is the best DPO I have ever had the privilege of collaborating with.

Olga possesses an unparalleled set of skills that make navigating the complexities of GDPR seem effortless. Her in-depth understanding of data protection regulations, coupled with her strategic approach, has made compliance not only achievable but also streamlined for the organisation.

What sets Olga apart is her ability to demystify the intricacies of GDPR, making it comprehensible and accessible to everyone. Her commitment to creating a culture of data privacy is truly commendable, and under her guidance, the organisation saw a remarkable improvement in our data protection practices.”

“Olga's approach to the tasks and collaboration in general was constructive, energetic, positive and visionary.”

Any advice for aspiring professionals in this field?

First of all, it is not necessary to be a lawyer to work in this field.

But please, don’t just work in this field because it is trendy!

However, having a significant interest and dedication to this field is important to succeed.

Working in this field requires continuous learning and skill development, as well as extensive networking within and outside the organization.

There is much to consider in this field, and understanding GDPR alone is not sufficient for success.

This is what I always communicate to my mentees.

Naturally, this varies based on each individual's unique personality and aspirations.

Skills and characteristics

Projects for among others DFDS, L'Oreal, University of Copenhagen, Sampension, IN Groupe / Nets

Knowledge And Skills

Exceptional analytical abilities and adept at resolving complex data compliance problems.

The ability to apply business judgments, think strategically, and provide practical advice by balancing business needs with data compliance risks.

Strong written and verbal communication skills, as well as the ability to work well with a diverse client base.

Knowledge of the data compliance aspects of the product development life cycle, data handling and asset classification, and knowledge of the role of a data compliance professional in ensuring that customer data is properly managed.

Ability to navigate national and international data compliance.

Capability to explain the significance of data compliance. Comfortable with addressing data compliance concerns at various management levels, including those with differing degrees of knowledge on the subject.

Personal Characteristics

I am accessible and able to earn the respect of stakeholders at all company levels and roles.

I am confident, energetic, and a self-starter, with strong interpersonal skills.

I have good judgment, a sense of urgency, and have demonstrated commitment to high standards of ethics, regulatory compliance, customer service, and business integrity.

I am available to handle incidents and emergencies outside standard office hours when necessary.

I am willing to travel to assess and address data compliance requirements in the jurisdictions where the organization operates.

I strive to serve as a role model by demonstrating and encouraging independence, problem-solving, and initiative within my team.

PODCAST "Confessions of a DPO"

Podcast icon

About the Podcast

The podcast series "Confessions of a DPO" was launched following the EDPB’s January 2024 report (Coordinated Enforcement Action, Designation and Position of Data Protection Officers | European Data Protection Board). It highlighted the ongoing need to focus on the DPO role.

This podcast is nothing more than a friendly conversation between DPOs.

Listen on Spotify

Listen to the latest episodes

New episodes are released weekly, featuring discussions on:

  • Data Protection Best Practices
  • GDPR Compliance Tips
  • Information Security Insights
  • Real-world DPO Experiences

Data Protection Officer – a practical handbook

handbook

Data Protection Officer – a practical handbook has been a project in progress for a while now. It is anticipated to launch in 28th January 2026. Please stay tuned for updates.

Contact

Get in touch

Olga Nielsen

CEO and Managing Partner @ Nordic Data Compliance Centre

Contact Information

Email: olganielsen@datacompliancecentre.com

Olga Nielsen