A personal data breach has occurred, and the controller is writing a draft notification for the supervisory authority. The following information is already in the notification:
- The nature of the personal data breach and its possible consequences.
- Information regarding the parties that can provide additional information about the data breach.
What other information must the controller provide?
To advise the controller on the mitigation of privacy risks to protect the controller from liability claims for non-compliance. Incorrect. The supervisory authority has the task to monitor compliance and to advise on enhancements, but its purpose is not to protect the controller.
To fulfill the obligation in the GDPR to implement appropriate technical and organizational measures for data protection. Incorrect. The audit is not the implementation of the measures, but an assessment of the effectiveness of them.
To monitor and enforce the application of the GDPR by assessing that processing is performed in compliance with the GDPR. Correct. According to the GDPR this is an important task of a supervisory authority. (Literature: A, Chapter 7; GDPR Article 57 (1)(a))
Rachael
9 months agoLera
9 months agoRodolfo
10 months agoLenna
10 months agoRozella
10 months agoTawny
10 months agoGianna
10 months agoMy
11 months agoLudivina
11 months agoVirgina
11 months agoJoanna
11 months agoJillian
11 months agoLaquita
11 months agoNorah
11 months agoArthur
11 months agoMariann
11 months agoKayleigh
1 year agoSabine
1 year agoPearline
1 year agoPhyliss
1 year agoTrinidad
1 year agoGregoria
1 year agoCatrice
1 year agoRyan
1 year agoRhea
1 year agoJanna
1 year agoDorothy
1 year agoDeja
1 year agoVicky
1 year agoKenda
1 year agoMarlon
1 year agoTijuana
1 year agoKandis
1 year agoJess
1 year ago