Data protection officer

The data protection officer is a person who ensures that their organisation processes the personal data of its staff, customers, providers or any other individuals in compliance with the demands of GDPR . The DPO may be employed internally or externally.

Under the General Data Protection Regulation, appointing a data protection officer is mandatory if you are a public authority or body your core activities consist of processing operations which require regular and systematic monitoring of Data subject s on a large scale

According to the Article 29 Working Party:

A commitment to designate a DPO where required in line with article 37 of the GDPR or any other person or entity (such as a chief privacy officer) with responsibility to monitor compliance with the BCRs enjoying the highest management support for the fulfilling of this task.

The DPO or the other privacy professionals can be assisted by a team, a network of local DPOs or local contacts as appropriate. The DPO shall directly report to the highest management level (GDPR Art. 38-3). The BCRs should include a brief description of the internal structure, role, position and tasks of the DPO or similar function and the network created to ensure compliance with the rules. For example, that the DPO or chief privacy officer informs and advises the highest 14 Criteria for approval of BCRs In the BCRs In the application form Texts of reference Comments References to application/BCRs5 management, deals with Supervisory Authorities’ investigations, monitors and annually reports on compliance at a global level, and that local DPOs or local contacts can be in charge of handling local complaints from data subjects, reporting major privacy issues to the DPO, monitoring training and compliance at a local level.

More about Data Protection Officer on Piwik PRO Blog:
https://piwik.pro/blog/appoint-dpo-data-protection-officer-not/
https://piwik.pro/blog/security-procedures-under-gdpr/
https://piwik.pro/blog/gdpr-actionable-facts-and-steps-to-follow/
https://piwik.pro/blog/burning-questions-gdpr-answered-part-2-3/


  • A review of HIPAA-compliant analytics platforms

    As a healthcare organization subject to HIPAA, you’re walking a fine line when trying to improve the patient experience and ensure your activities are HIPAA-compliant. Vendors have been adjusting to the shifting privacy-oriented analytics landscape and their clients’ expectations. Many of them change their offers accordingly. At the same time, the dominant analytics vendors are…

  • Piwik PRO expands global hosting options with new data center in the UAE

    Piwik PRO remains committed to delivering flexible, secure, and regionally focused hosting solutions for businesses around the world. We’re pleased to announce the launch of our new data center in the UAE North, hosted on Microsoft Azure. This latest addition complements our existing location in Hong Kong, expanding our global hosting footprint and offering organizations…