Unbenanntes Dokument

Accountability




Intro: What is meant by accountability, what is its function and what needs to be considered when implementing it?

To-Dos: What is the specific procedure for fulfilling accountability and related obligations?

Statements: What have the data protection supervisory authorities published on the subject of accountability?



Sufficiently fulfil the accountability obligation





What is meant by accountability, what is its function and what needs to be considered when implementing it?

The accountability obligation means that the controller must be able to prove that the other obligations of the GDPR (e.g. documentation obligation, fulfilment of data protection rights, transparency obligation) are complied with. For example, the controller should not only delete data in good time. They should also be able to prove that they are doing so.

In the case of deletion, a deletion concept could provide information on who deletes data when and how in the company. The fulfilment of rights (e.g. right of access) could be demonstrated by means of guidelines that regulate exactly how to proceed in the event of an incoming data subject rights request.

The purpose of the accountability obligation is to be able to easily demonstrate to a requesting data protection supervisory authority that compliance with the GDPR obligation is taken seriously. The accountability obligation as such is subject to a fine. This means that even if the company actually fulfills all other data protection obligations but cannot prove that it does so, a fine can be imposed.



What is the specific procedure for fulfilling accountability and related obligations?

1

Implementation of all other obligations under the GDPR.


2

Identification of methods that enable proof of the implementation of obligations (e.g. creation of an authorization concept or a data subject rights policy).


3

Structured provision of verification documents in the event of a request from the responsible data protection supervisory authority and, if necessary, corresponding document output to the supervisory authority.




What have the data protection supervisory authorities published on the subject of accountability?


>> Find out which other data protection obligations have to be considered with respect to European data protection law.



Unbenanntes Dokument

Appoint a professional data protection officer now!


Do you need support with the implementation of data protection requirements? about our services.
Unbenanntes Dokument

We are
familiar with the characteristics of small and large companies
experienced in communicating with authorities
active in data protection for over 10 years.