Security and Protection of Personal Data, v1.0
Specifies requirements in accordance with General Data Protection Regulation (GDPR) Art. 5(1)(f).
Assessment Step
1
Security and Protection of Personal Data (SecurityandProtectionofPersonalData)
Does the entity ensure that personal data is processed in a manner that ensures appropriate security, including protection against unauthorised or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organisational measures?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.
|
Conformance Criteria (1)
Security and Protection of Personal Data
The data controller must ensure that personal data is processed in a manner that ensures appropriate security, including protection against unauthorised or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organisational measures.
Citation
GDPR
Art. 5(1)(f), Recital 39
|