Rory Ovedje Global | Privalex Advisory

21.9K posts

Rory Ovedje Global | Privalex Advisory banner
Rory Ovedje Global | Privalex Advisory

Rory Ovedje Global | Privalex Advisory

@ovedjerory

Lawyer | Data privacy consultant | Assistant Secretary, NBA-SLP's Emerging Trends Committee | Associate @PrivaLexAdvisor. Volunteer @Tml_Club. Editor @LawverseM

Borderless เข้าร่วม Ocak 2019
1.4K กำลังติดตาม3.3K ผู้ติดตาม
ทวีตที่ปักหมุด
Rory Ovedje Global | Privalex Advisory
Technology compliance & data protection advisory that takes you from risk of penalties and investor pushback to audit-ready, trusted, and growth-focused. If you’re: • Unsure how to navigate data protection laws like (like the NDPR, NDPA, GAID or GDPR) while scaling • Worried investors will uncover compliance gaps during due diligence • Stretched thin because your team lacks in-house compliance expertise I can help. I’m Rory Ovedje; a Data Protection & Compliance Consultant for startups and growing tech businesses. Here’s the truth: investors, regulators, and even customers now expect businesses to prove they take privacy and compliance seriously. Yet, many startups leave compliance as an afterthought, until fines, audits, or investor red flags show up. This creates high stakes for growth. So how do you scale with confidence and stay compliant? Imagine eliminating the guesswork with compliance that: 1. Keeps you audit-ready and regulator-proof 2. Builds trust with customers and investors. 3. Protects your business from costly legal risks. That’s what I help you do. Here’s what people are saying: “She brings a unique blend of legal insight and practical data protection expertise that adds real value to any team or project. She has a strong grasp of data protection principles and demonstrates a clear understanding of regulatory frameworks, making her a reliable asset in privacy-related matters. She collaborates effortlessly, contributes thoughtfully, and always brings a positive, solutions-driven approach.” “Her ability to quickly understand complex regulatory issues and apply them practically was a valuable asset to the team.” “She turned data protection compliance into something simple our team could actually follow.” “Her blend of drive, adaptability and ability to transform complex challenges into clear, actionable plans makes her an outstanding asset to any organisation.” Let’s discuss how the right compliance framework can help your startup stand out from the crowd. Send me a message today!
English
2
13
86
14.6K
Rory Ovedje Global | Privalex Advisory
Most compliance prospects are often in a hurry. And frankly, lazy. Best practice is to bring in external help at least 5 months before your filing deadline. This gives the process room to breathe. Compliance takes time, evidence, and actual human judgment. But no. They show up two weeks to deadline, fire in their eyes and their compliance budget suddenly very flexible. And when you price the job properly, accounting for the hurried work and the sleepless nights they're about to plunge you into, they carry eye like *you're* the one being unreasonable. So they shop around. Find someone who says yes faster and charges half the price. The Delve scandal has shown us exactly what that looks like at scale: — 493 out of 494 SOC 2 reports allegedly copy-pasted — Auditor conclusions pre-written before anyone reviewed a single piece of evidence — Trust pages showing completed pentests that never happened FAKE COMPLIANCE. The companies holding those reports aren't just embarrassed, they're potentially criminally liable under HIPAA, facing GDPR fines up to 4% of global revenue. For gaps they *thought were resolved.* Cheap and fast will always find buyers. Until it makes them pay double to clean up the mess. 💔 . . . I'm Rory Ovedje. I work with PrivaLex Advisory, a technology compliance firm serving clients in Nigeria and the UK. My DM is open for inquiries.
Ryan@ohryansbelt

Delve, a YC-backed compliance startup that raised $32 million, has been accused of systematically faking SOC 2, ISO 27001, HIPAA, and GDPR compliance reports for hundreds of clients. According to a detailed Substack investigation by DeepDelver, a leaked Google spreadsheet containing links to hundreds of confidential draft audit reports revealed that Delve generates auditor conclusions before any auditor reviews evidence, uses the same template across 99.8% of reports, and relies on Indian certification mills operating through empty US shells instead of the "US-based CPA firms" they advertise. Here's the breakdown: > 493 out of 494 leaked SOC 2 reports allegedly contain identical boilerplate text, including the same grammatical errors and nonsensical sentences, with only a company name, logo, org chart, and signature swapped in > Auditor conclusions and test procedures are reportedly pre-written in draft reports before clients even provide their company description, which would violate AICPA independence rules requiring auditors to independently design tests and form conclusions > All 259 Type II reports claim zero security incidents, zero personnel changes, zero customer terminations, and zero cyber incidents during the observation period, with identical "unable to test" conclusions across every client > Delve's "US-based auditors" are actually Accorp and Gradient, described as Indian certification mills operating through US shell entities. 99%+ of clients reportedly went through one of these two firms over the past 6 months > The platform allegedly publishes fully populated trust pages claiming vulnerability scanning, pentesting, and data recovery simulations before any compliance work has been done > Delve pre-fabricates board meeting minutes, risk assessments, security incident simulations, and employee evidence that clients can adopt with a single click, according to the author > Most "integrations" are just containers for manual screenshots with no actual API connections. The author describes the platform as a "SOC 2 template pack with a thin SaaS wrapper" > When the leak was exposed, CEO Karun Kaushik emailed clients calling the allegations "falsified claims" from an "AI-generated email" and stated no sensitive data was accessed, while the reports themselves contained private signatures and confidential architecture diagrams > Companies relying on these reports could face criminal liability under HIPAA and fines up to 4% of global revenue under GDPR for compliance violations they believed were resolved > When clients threaten to leave, Delve reportedly pairs them with an external vCISO for manual off-platform work, which the author argues proves their own platform can't deliver real compliance > Delve's sales price dropped from $15,000 to $6,000 with ISO 27001 and a penetration test thrown in when a client mentioned considering a competitor

English
0
0
3
73
Rory Ovedje Global | Privalex Advisory รีทวีตแล้ว
PrivaLex Advisory
PrivaLex Advisory@PrivaLexAdvisor·
It’s Friday (TGIF)… 🥂 Here are 6 cybersecurity habits that separate the businesses that recover from incidents quickly from the ones that do not recover at all. ⬇️⬇️
PrivaLex Advisory tweet mediaPrivaLex Advisory tweet mediaPrivaLex Advisory tweet mediaPrivaLex Advisory tweet media
English
1
3
3
21
Rory Ovedje Global | Privalex Advisory รีทวีตแล้ว
PrivaLex Advisory
PrivaLex Advisory@PrivaLexAdvisor·
‼️ Weak and reused passwords are the single most preventable cause of business account compromise. And yet most businesses still do not have a formal password policy. 📌 If your business does not yet have a password policy, it has an open door.
PrivaLex Advisory tweet mediaPrivaLex Advisory tweet media
English
1
2
3
18
AO
AO@Igte8·
@ovedjerory I think he meant it in the context it has been popularized to be and not it in its real sense
English
0
0
0
14
Rory Ovedje Global | Privalex Advisory
Him: I'm not a traditional man. (Thinking he ate.) I don't know what made us think disowning our tradition is cool. You can be liberal and still be a person with roots. Let's not allow our history and identity get wiped out. 🙏🏻 I can't speak my language but I intend to get language tutors for my children. Classes start from conception. Take am play first.
English
2
0
8
336
v
v@vughnn·
Very Random but one sachet of pure water is now 50 naira. That used to be the price of a full bag of water. Interesting days ahead.
English
55
1.7K
5.1K
51.5K
Rory Ovedje Global | Privalex Advisory รีทวีตแล้ว
Mustapha♻️
Mustapha♻️@hamxajnr·
Clothes you don’t need to iron>>>>
English
94
2.4K
10.1K
117.9K
Rory Ovedje Global | Privalex Advisory รีทวีตแล้ว
stressed
stressed@onlystresstoday·
Lord, remove any laziness from my body and push me to my full potential the rest of this year.
English
49
9.5K
46.3K
492.3K
Princess Ola
Princess Ola@olaere_·
The freedom in law school has made me realize even more how Abuad was really doing too much.
English
14
14
264
18.6K
Rory Ovedje Global | Privalex Advisory รีทวีตแล้ว
F4kaika🦅
F4kaika🦅@Faksback666·
This generation of parents 😂😂😂😂😂 I like the idea sha
F4kaika🦅 tweet media
English
52
224
1.4K
62.6K
Rory Ovedje Global | Privalex Advisory รีทวีตแล้ว
IVY
IVY@Iamivy05·
a customer couldn't decide between two desserts and her boyfriend said “just get both, it’s your day” and I was like "omg is it your birthday??’ and she said” no, he says that every day”
English
70
1.4K
23.4K
253.1K