Lawful, Fair, and Transparent Processing of Personal Data, v1.0

Specifies requirements in accordance with General Data Protection Regulation (GDPR) Art. 5(1)(a).

Assessment Step

1
Lawful, Fair, and Transparent Processing of Personal Data (LawfulFairandTransparentProcessingofPersonalData)
Does the entity ensure that personal data is processed lawfully, fairly, and in a transparent manner in relation to the data subject?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.

Conformance Criteria (1)

Lawful, Fair, and Transparent Processing of Personal Data
The data controller must ensure that personal data is processed lawfully, fairly, and in a transparent manner in relation to the data subject.
Citation
GDPR
Art. 5(1)(a), Recital 39