Accountability for Compliance with the GDPR, Subject to Fines, v1.0

Specifies requirements in accordance with General Data Protection Regulation (GDPR) Art. 83(2)-(6).

Assessment Step

1
Accountability for Compliance with the GDPR, Subject to Fines (AccountabilityforCompliancewiththeGDPRSubjecttoFines)
Does the entity ensure full compliance with the provisions of the GDPR and maintain accountability for its processing activities, recognizing that non-compliance may result in administrative fines assessed by supervisory authorities?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.

Conformance Criteria (1)

Accountability for Compliance with the GDPR, Subject to Fines
The data controller and the data processor must ensure compliance with the GDPR, particularly with the provisions listed in Article 83(4), (5), and (6), and are subject to administrative fines imposed by supervisory authorities for violations, based on the nature, gravity, duration, and intentionality of the infringement.
Citation
GDPR
Art. 83(2)–(6), Recitals 148, 150