The Nigeria Data Protection Act 2023: What Every Tech Startup Needs to Know
A practical breakdown of the NDPA's key obligations for technology companies — from registration requirements to data subject rights and cross-border transfer rules.
Writing & Publications
Analysis and commentary on data protection law, GDPR/NDPA compliance, AI governance, and the regulatory landscape for African tech businesses.
A practical breakdown of the NDPA's key obligations for technology companies — from registration requirements to data subject rights and cross-border transfer rules.
Proactive AI governance strategies for African tech companies, drawing on lessons from the EU AI Act and emerging national frameworks across the continent.
Practical guidance for Nigerian startups with EU customers on meeting GDPR obligations — covering lawful bases, SCCs, and when you actually need a DPO.
An examination of Nigeria, Kenya, and South Africa's data localisation requirements and how cloud-first businesses should structure their data architecture.
A deep dive into NDPA consent requirements and when legitimate interests, contractual necessity, or legal obligation are more appropriate legal bases.
Who needs a Data Protection Officer under the NDPA, what qualifications they need, and how to structure the role for operational effectiveness.
How African technology companies can begin building algorithmic accountability practices today — and why early movers will have a competitive advantage.
A practical overview of the multi-regulatory environment facing Nigerian fintechs — where CBN, SEC, and NITDA/NDPC requirements interact and where conflicts arise.
Stay Informed
Follow on LinkedIn for the latest commentary on data protection, AI regulation, and compliance for African tech businesses.
Follow on LinkedIn