Data Protection in the Public Sector:
How to Balance Compliance & Innovation

VTC Compliant or Not?

During this strategic information session, organised in collaboration with Microsoft and Escala, you will discover how public sector organisations can effectively address data protection challenges while fully complying with the latest VTC guidelines.

For many public authorities — such as cities and municipalities, public social welfare centres (OCMWs), police and fire zones, hospitals, and others — it is not always clear whether they are fully compliant with the applicable regulations. Although the VTC has issued a clear position (see VTC implementation letter), this still raises many practical questions, particularly for organisations working with Microsoft 365.

How can you remain VTC-compliant without sacrificing efficiency or user experience? 
During this session, you will learn how public organisations can organise data protection and cybersecurity in a secure and efficient way — fully aligned with VTC guidelines and NIS2 — without compromising on ease of use for employees.

What will you learn during this session?

After this information session, you will have clear insights into: 
✅The current state of information security and privacy in the public sector.
✅How GDPR, VTC guidelines, NIS2, and the AI Act interact.
✅How innovative technologies (such as Microsoft 365 integrations) support both compliance and usability.
✅Solution architectures that combine legal requirements with an optimal user experience.
✅A real-life case from Heist-op-den-Berg demonstrating how regulations can be applied in practice using the right technology and integration with existing systems.
✅The official security building blocks of the Flemish Government and how they can be practically implemented in public organisations. 
✅Why now is the right momentum to adopt cloud innovations, ensuring future readiness and avoiding strategic lag.

Who should attend?

✅Data Protection Officers (DPOs) or individuals responsible for information security and data protection in the context of GDPR and VTC guidelines.
✅Management responsible for cybersecurity and digital resilience, with a focus on NIS2 compliance.
✅IT managers or department heads responsible for cybersecurity, digital resilience, NIS2 compliance, and the technical aspects of GDPR and VTC guidelines.
✅Professionals working within public sector organisations, including:

  • Municipalities and cities
  • Intermunicipal organisations
  • Utility companies
  • Public social welfare centres (OCMWs) and social services
  • Police and fire zones

Program Overview:

Part 1 – Update on Data Protection and Compliance in the Public Sector

Insight into the latest developments regarding VTC guidelines, privacy, cybersecurity, and NIS2.
✅Impact of recent VTC guidelines 
✅Schrems II ruling and EDPB guidelines
✅EU–US Data Privacy Framework
✅NIS2 and the AI Act

Guest Speaker: Ms Kris Proost, DPO / Information Security Advisor 

Part 2 – Technology & Compliance: Finding the Right Balance

How innovative technologies remain compliant and user-friendly within Microsoft 365. 
✅Document management and Office Web Apps Server integration
✅Integration with back-office systems and government platforms

Guest Speaker: Mr Luc Deleu, Data-Driven Organisation Architect, Ometa 

Part 3 – Case Study: Municipality of Heist-op-den-Berg

✅ How source data is shared securely and without duplication between different stakeholders. 

Guest Speaker: Mr Dirk Van Loock, IT Manager, Municipality of Heist-op-den-Berg 

Part 4 – Security Building Blocks of the Flemish Government

✅ Overview of official security building blocks
✅ Practical implementation within public organisation

Guest Speaker: Mr Peter Van Lier, Senior Programme Manager, Flemish Government 

Part 5 – Microsoft: Creating Impact Through Innovation 

Innovation enables tangible progress: 

✅ IT systems as the connecting link between people and processes: why innovation is essential for efficient, future-ready operations 
✅ How Microsoft innovations strengthen system performance and enable more impactful service delivery 

Guest Speaker: Mr Jo Wouters, Technology Strategist, Microsoft 

Part 6 – Networking Moment

Following the session, you are invited to a networking reception with food and drinks, offering the opportunity to exchange experiences with peers, speakers, and technology partners. 

Practical Information:


🕛Date & Time: Thursday, 2 April, from 09:00 to 14:00
📍Location: Microsoft Belux | Passport Building, Brussels National Airport 1K, 1930 Zaventem
🗣️Language: Dutch
🏢 Format: In-person 
💸Cost: Free of charge
📝Registration: Via the form below

Participation form:

Data Protection Sessions April 2026