Download as pdf or txt
Download as pdf or txt
You are on page 1of 1

Structuring data Product design process Cross border data transfers Controller

Anonymisation Privacy by design EC model clauses Accountability

Pseudonimysation Privacy by default BCR s Information notices


Mindmap GDPR Louwers Advocaten

Profiling Privacy Impact Certification & codes of Legend Internal records


assessment conduct Compared to the current situation:
there is little practical difference for most organisations Data breach
Privacy shield reporting
some changes are broadly positive for most organisations

Processing Other principles some changes are broadly negative for most
organisations.

Processor
Actors
General Data Protection Regulation Internal records
Conditions & Principles Controller
GDPR Written data
Processor processing
agreement
Data subject
Conditions Principles
Enforcement & Sanctions Direct responsibility
Supervisory authority
Lawfulness, fairness Performance of a
and transparency
Direct enforcement
contract Consent Data Protection Officer
Purpose limitation Legal obligation Explicit

Data minimisation Vital interests data Informed Data subject


subject Enforcement
Accuracy Statement or clear affirmative Right to obtain
Performance task of action National Sanctions
information
Storage limitation public interest enforcement powers
10 mln /2% - annual
Special categories of personal Right to rectification
Integrity and Legitimate interests data One stop shop worldwide turnover
confidentiality
Right to object
Consent Children EDPD 20 mln /4% - annual
worldwide turnover
Accountability Right to erasure/to
be forgotten
Ten Hagestraat 5 | Postbus P.O. Box 440 | 5600 AK Eindhoven | Phone: +31 (0)40 2393 200
Zuid-Hollandlaan 7 | 2596 AL The Hague | Phone: +31 (0)70 240 0836
www.louwersadvocaten.nl
Data portability

You might also like