Salesforce's Data Processing Agreement (DPA)

Mike Whelan
Chief Community Officer

In this episode, Arohi Kashyap tears down the Salesforce Data Processing Addendum (DPA).

Companies that deal with private data every day may not see managing data as mission-critical. However, as Kashyap points out, corporate counsel needs to understand and manage data risks.

Kashyap uses Salesforce’s agreement to illustrate a few important principles:

  • Roles must defined, particularly as they shift during an engagement,
  • Liability should be clear in the event of a plausible data breach, and
  • Counsel must understand that not-urgent is not the same as not-important when it comes to data risks.

 

EPISODE LINKS

Review the contract here

GUEST LINKS: Website | LinkedIn

 

Tags: Salesforce, contracts, data processing agreements, privacy, data breaches

Contributors

Mike Whelan
Chief Community Officer

You may also like

Standard Vendor Agreement with Heather Bowen Pascual

In this episode, Heather Bowen Pascual shares principles for drafting and interpreting a Standard Vendor Agreement.

Fund Partnership Agreement with Melinda Scott

Learn how to draft an effective commodity fund partnership agreement. Special focus is given to choices about state of formation, risk disclosures, transfers and redemption of shares, and audits.