In its Article 9 the GDPR categorizes some types of personal data as ''sensitive''.
Of these below which are considered sensitive?
As stated in the statement, Article 9 concerns the treatment of special categories of personal data, also called sensitive data.
This is a type of question that is often asked by EXIN. Important to remember which types of data are categorized as sensitive.
Article 9: Processing of special categories of personal data
1. Processing of personal data revealing racial or ethnic origin, political opinions, religious or philosophical beliefs, or trade union membership, and the processing of genetic data, biometric data for the purpose of uniquely identifying a natural person, data concerning health or data concerning a natural person's sex life or sexual orientation shall be prohibited.
Examples of sensitive data: Race, skin color, family tree, political party, political party affiliation, religious beliefs, illness, test results, digital, facial recognition and sexual preference. These are just a few examples.
How is Data Lifecycle Management (DLM) related to data protection?
It aims to manage the flow of data throughout the life cycle, from collection, processing, sharing, storage and deletion.
Having the knowledge where the data travels, who is responsible, who has access, helps and a lot to implement security measures.
What is the purpose of Data Lifecycle Management (DLM)?
It aims to manage the flow of data throughout the life cycle, from collection, processing, sharing, storage and deletion.
Having the knowledge where the data travels, who is responsible, who has access, helps and a lot to implement security measures.
What is the term used in the General Data Protection Regulation (GDPR) for the disclosure of, or unauthorized access to, personal data?
GDPR uses the term data breach.
Article 4 paragraph 12
'personal data breach' means a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to, personal data transmitted, stored or otherwise processed.
The Supervisory Authority is notified whenever an organization intends to process personal data, except for some specific situations. The Supervisory Authority keeps a publicly accessible register of these data processing operations.
What else is a legal obligation of the Supervisory Authority in reaction to such a notification?
Harold Phillips
13 days agoMatthew Martinez
22 days agoNancy Edwards
1 month agoNancy Sanchez
2 months agoDaniel Adams
3 months agoWilliam Stewart
3 months agoMonica Brown
3 months agoAndrew Moore
4 months agoSarah Jackson
3 months agoSusan Lewis
3 months agoJoseph Stewart
3 months agoJason Adams
3 months agoBrunilda
4 months agoLou
5 months agoNorah
5 months agoCarlee
5 months agoSheridan
5 months agoMarlon
6 months agoSean
6 months agoLouvenia
6 months agoGearldine
6 months agoCorinne
6 months agoAudra
7 months agoDonette
7 months agoCarlene
7 months agoDawne
7 months agoAmalia
8 months agoStevie
8 months agoDenae
8 months agoIdella
8 months agoSabrina
9 months agoGeorgiana
9 months agoStefan
9 months agoGwenn
9 months agoPa
10 months agoRonnie
10 months agoMitsue
10 months agoArlette
10 months agoJaime
11 months agoLaurene
11 months agoCarin
11 months agoAnnabelle
11 months agoSharee
1 year agoMagnolia
1 year agoRolland
1 year agoCarman
1 year agoGiuseppe
1 year agoIsabella
1 year agoCarmen
1 year agoStacey
1 year agoEdwin
1 year agoJeanice
1 year agoElly
1 year agoDeandrea
2 years agoMargarett
2 years agoYen
2 years agoAlyssa
2 years agoTamra
2 years agoElbert
2 years agoRicarda
2 years agoThea
2 years agoAmber
2 years agoLawrence
2 years agoNoah
2 years agoRima
2 years agoCorinne
2 years agoGlenn
2 years agoPura
2 years agoRex
2 years agoAlberto
2 years agoGerri
2 years agoXochitl
2 years agoProvidencia
2 years agoBuck
2 years agoVerlene
2 years agoGearldine
2 years agoDahlia
2 years agoSabina
2 years agoChara
2 years agoMargery
2 years agoLisandra
2 years ago