7 Principles of the General Data Protection Regulation (GDPR) Flashcards
Companies must use data fairly and in a way that doesn’t breach any other laws.
Lawfulness, fairness, and transparency
Lawfulness, fairness, and transparency
Companies must use data fairly and in a way that doesn’t breach any other laws.
Companies must be clear on their purpose for processing the data subject’s data.
Purpose limitation
Purpose limitation
Companies must be clear on their purpose for processing the data subject’s data.
Companies must ensure personal data they process is relevant, adequate and necessary.
Data minimisation
Data minimisation
Companies must ensure personal data they process is relevant, adequate and necessary.
Companies must ensure all personal data they hold is correct or update/erase it.
Accuracy
Accuracy
Companies must ensure all personal data they hold is correct or update/erase it.
Companies must not keep personal data for longer than they need it.
Storage limitation
Storage limitation
Companies must not keep personal data for longer than they need it.
Companies must ensure they have appropriate security measures to protect their data.
Integrity and confidentiality
Integrity and confidentiality
Companies must ensure they have appropriate security measures to protect their data.
Companies must have measures in place to demonstrate they are GDPR compliant.
Accountability
Accountability
Companies must have measures in place to demonstrate they are GDPR compliant.