Menü aufrufen
Toggle preferences menu
Persönliches Menü aufrufen
Nicht angemeldet
Ihre IP-Adresse wird öffentlich sichtbar sein, wenn Sie Änderungen vornehmen.

Translations:Datenschutz-Folgenabschätzung/72/en

Aus HITGuard User Guide
Version vom 13. Januar 2021, 08:25 Uhr von Sala (Diskussion | Beiträge) (Die Seite wurde neu angelegt: „Several points of the GDPR must be clarified for this purpose: * Information obligation (Art 12-14 GDPR) and consent of the data subject (Art. 6 GDPR): :: It m…“)
(Unterschied) ← Nächstältere Version | Aktuelle Version (Unterschied) | Nächstjüngere Version → (Unterschied)

Several points of the GDPR must be clarified for this purpose:

  • Information obligation (Art 12-14 GDPR) and consent of the data subject (Art. 6 GDPR):
It must be described how the data subjects are informed about the processing, which information is provided to you in which way and how the consent of the processing is obtained, if this is required.
For this purpose, measures and controls to demonstrate compliance with the information obligation and consent of the data subject can be linked here.
  • Data subject rights (Art 13-22 GDPR):
It must be explained how data subjects can exercise their rights of access, authorization, erasure, restriction of processing, data transfer and objection.
For this purpose, measures and controls to demonstrate compliance with data subjects' rights can be assigned here.
  • Commissioned processing (Art 28 GDPR):
It must be explained whether and why the obligations of the processors are clearly defined and contractually regulated.
For this purpose, a list of the processors is displayed. These come from the main processing activity.
  • Data transfers to third countries (Art 44-49 GDPR):
It must be explained whether data transfers to countries outside the EU take place and whether and how these data are adequately protected.
For this purpose, a list of recipients to third countries is displayed. This comes from the main processing activity.
  • Position of the data subjects
It must be described if and how the data subject's point of view was collected.
If it was not raised, this must be justified!