A personal data breach has occurred, and the controller is writing a draft notification for the supervisory authority. The following information is already in the notification:
- The nature of the personal data breach and its possible consequences.
- Information regarding the parties that can provide additional information about the data breach.
What other information must the controller provide?
To advise the controller on the mitigation of privacy risks to protect the controller from liability claims for non-compliance. Incorrect. The supervisory authority has the task to monitor compliance and to advise on enhancements, but its purpose is not to protect the controller.
To fulfill the obligation in the GDPR to implement appropriate technical and organizational measures for data protection. Incorrect. The audit is not the implementation of the measures, but an assessment of the effectiveness of them.
To monitor and enforce the application of the GDPR by assessing that processing is performed in compliance with the GDPR. Correct. According to the GDPR this is an important task of a supervisory authority. (Literature: A, Chapter 7; GDPR Article 57 (1)(a))
Rachael
5 months agoLera
5 months agoRodolfo
5 months agoLenna
5 months agoRozella
6 months agoTawny
6 months agoGianna
6 months agoMy
6 months agoLudivina
6 months agoVirgina
6 months agoJoanna
6 months agoJillian
6 months agoLaquita
6 months agoNorah
6 months agoArthur
7 months agoMariann
7 months agoKayleigh
11 months agoSabine
11 months agoPearline
11 months agoPhyliss
11 months agoTrinidad
12 months agoGregoria
10 months agoCatrice
10 months agoRyan
10 months agoRhea
12 months agoJanna
10 months agoDorothy
10 months agoDeja
11 months agoVicky
11 months agoKenda
12 months agoMarlon
12 months agoTijuana
1 year agoKandis
1 year agoJess
1 year ago