Israeli Privacy Regulations & Amendment 13

Israeli Privacy Regulations & Amendment 13

Amendment 13 to the Israeli Privacy Protection Law is in force - with direct financial penalties and expanded enforcement. We take businesses from gap assessment to full compliance, including DPO-as-a-service, in Hebrew and English.

What Changed - and Why It Matters

Amendment 13 is the most significant update to Israeli privacy law in decades. It expands the Privacy Protection Authority’s enforcement powers, introduces direct financial penalties without court proceedings, updates database registration duties and requires certain organizations to appoint a privacy protection officer (DPO).

Most Israeli businesses, nonprofits and clinics are subject to these regulations - and for international companies operating in Israel, local compliance is a distinct obligation that GDPR compliance alone does not satisfy.

This is our home turf: we run a dedicated Amendment 13 practice for our Hebrew-speaking clients, and we are among the few providers delivering it fully in English.

How We Get You Compliant

A structured path, documented at every step.

1. Gap Assessment

We map the personal data you hold, how it flows, who accesses it and how it is protected - and produce a prioritized gap report against the regulations.

2. Implementation

Technical controls (access management, encryption, backup, monitoring) and procedural ones (policies, training, incident response) - implemented by the same team that manages your IT.

3. Documentation

The regulations require you to prove compliance, not just achieve it. We produce and maintain the required documentation and security procedures.

4. DPO as a Service

Where a privacy protection officer is required, we provide the function as a service - a named, accountable expert without a full-time hire.

Frequently Asked Questions

Does Amendment 13 apply to my business?

If you manage or hold a database of personal information - customers, patients, employees or leads - the Israeli Privacy Protection Regulations apply to you. Amendment 13 sharpens enforcement and adds direct financial penalties, in force since August 2025.

What is a DPO and do we need one?

A Data Protection Officer (privacy protection officer) is responsible for an organization’s privacy compliance. Amendment 13 requires certain organizations - especially those processing sensitive data at scale - to appoint one. We provide DPO-as-a-service for businesses that need the function without a full-time hire.

We are an international company - how does this relate to GDPR?

The Israeli framework shares DNA with GDPR but has its own requirements, registration duties and enforcement mechanisms. Compliance with GDPR is a strong starting point, not a substitute. We map the gaps specific to your Israeli operation.

What does the process look like?

Gap assessment of your current data handling, a prioritized remediation plan, implementation of the technical and procedural controls, and ongoing documentation - optionally with our DPO service attached.

Ready to talk about your IT?

We typically respond within one business hour. Hebrew and English support.

Certified & Trusted

ISO 27001 Certified - Information Security Management ISO 27799 Certified - Health Information Security Dun's 100 Registered Business