-
Where the processing is carried out by a public authority or body (except for courts acting in their judicial capacity).
Where the core activities of the controller or processor involve the processing of regular and systematic monitoring of individuals on a large scale. -
Where the core activities of the controller or processor involve the use, on a large scale, of special categories of data or personal data relating to criminal convictions.The last condition, special categories of data, is not a new concept and have long been subject to additional safeguards. The special categories are listed in Article 9 of the GDPR and consist of data relating to racial or ethnic information to data concerning a person’s sexual orientation.
- to inform and advise you and your employees about your obligations to comply with the GDPR and other data protection laws;
- to monitor compliance with the GDPR and other data protection laws, and with your data protection policies, including managing internal data protection activities; raising awareness of data protection issues, training staff and conducting internal audits;
- to advise on, and to monitor, data protection impact assessments;
- to cooperate with the supervisory authority; and
- to be the first point of contact for supervisory authorities and for individuals whose data is processed (employees, customers etc).
- expertise in national and European data protection laws and practices including an in-depth understanding of the GDPR;
- understanding of the processing operations carried out;
- understanding of information technologies and data security;
- knowledge of the charitable sector and the charity itself; and
- the ability to promote a data protection culture within the charity and its network.
- Our team will monitor internal compliance by carrying out data flows across your business and advising and offering solutions for any issues these might raise.
- We also inform and advise on policies and procedures, data protection obligations, and provide advice regarding Data Protection Impact Assessments (DPIAs) if needed.
- If you are managing Subject Access Requests and Data Breaches we can take the stress out of this time-consuming process by offering a tailored service to manage this for you.
- Importantly we take on the responsibility as an external independent support, which the ICO recommends, and act as a contact point for your data subjects and we are the contact person for the ICO.
No responses yet. Be the first to reply!
{{ctrlComment.postTotalComments}} responses
Load more responses