Availability for Audits and Inspections, v1.0

Specifies requirements in accordance with General Data Protection Regulation (GDPR) Art. 28(3)(g).

Assessment Step

1
Availability for Audits and Inspections (AvailabilityforAuditsandInspections)
Does the entity make available to the data controller all necessary information to demonstrate compliance with Article 28 and allow for and contribute to audits and inspections conducted by the data controller or its designee?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.

Conformance Criteria (1)

Availability for Audits and Inspections
The data processor must make available to the data controller all information necessary to demonstrate compliance with the obligations laid down in Article 28 and allow for and contribute to audits, including inspections, conducted by the controller or another auditor mandated by the controller.
Citation
GDPR
Art. 28(3)(g), Recital 81