Principle of lawfulness, fairness and transparency
|
Purpose limitation principle
|
Data minimization principle
|
Principle of accuracy
|
Storage limitation principle
|
Principle of integrity and confidentiality
|
Prohibition of processing the special categories of personal data
|
Conditions for engaging the other processor to the data processing
|
Designation of the identical scope of the responsibilities for the other processor
|
Contract or any other legal document in terms of the Article 28, paragraphs 3 and 4
|
Consequences of misconducting the purposes and instruments in the process of personal data processing by the processor
|
Obligation of the processor to comply with the instructions of the controller
|
A record of all the processing activities categories, that are carried on behalf of a controller
|
Form of the records according to Article 30, paragraphs 1 and 2
|
Making the records available to the supervisory authority if needed
|
Cooperation with the supervisory authority
|
Implementation of the appropriate technical and organisational measures
|
Ensuring the activities compliance of any natural person, acting under the authority of controller or processor
|
Notification the data breach to the controller
|
Compulsory designation of the data protection officer (DPO)
|
Publishing the data of the designated data protection officer
|
Responsibility of the controller and processor in context of the Data protection officer
|
Providing the support for the data protection officer
|
Organizational status of the Data protection officer
|
The Data protection officer and it´s other tasks and duties
|
Providing the information and access, that are essential for the certification procedure
|
Documentation of the assessment and suitable safeguards
|
Obligations of the controller (or processor) after the decision has been published
|
Joint liability in context of the personal data processing
|
Appropriate safeguards related to the rights and freedoms of the data subject
|