The GDPR describes the principle of data minimization. How can organizations comply with this principle?
Which of these options is an example of a data breach?
Which of the following has a data breach under the General Data Protection Regulation (GDPR)?
What is the definition of Supervisory Authority according to the GDPR?
A person buys a product at a store located in the European Economic Area (EEA). At the time of purchase, you are asked to fill out a registration form and he informs his personal email.
As is usual in many stores, in the next few days this person will start receiving several marketing emails. He considers the frequency of these emails to be very high. Demanding his rights, he asks the store to delete all his personal data.
What the store must do according to the General Data Protection Regulation (GDPR)?
An Independent Supervisory Authority has several responsibilities. Which of the following is one of these?
According to the GDPR, in what situation must data subjects always be notified of a personal data breach?
The Supervisory Authority is notified whenever an organization intends to process personal data, except for some specific situations. The Supervisory Authority keeps a publicly accessible register of these data processing operations.
What else is a legal obligation of the Supervisory Authority in reaction to such a notification?
A controller wants to switch processors. What is necessary to review before making this change, so that it remains GDPR compliant?
Which organizations need to comply with the General Data Protection Regulation (GDPR)?