Controllers and Processors Flashcards

1
Q

What is a data subject?

A

An individual from or about whom information is being collected

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a data controller (include GDPR article)?

A
Article 4(7)
Alone or jointly with others, determines the purposes and the means of the processing of personal data

AKA

The organization, not necessarily a business (could be a public authority or not-for-profit), that is collecting and using information about data subjects

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a data processor (including GDPR article)?

A
Article 4(8)
Processes personal data on behalf of the controller. A processor's activities must be transparent to the controller and any decisions that determine where personal data is processed or by whom must rely on approval from the controller.

AKA

A service provider to a data controller that only does with the data what the data controller tells it to do with it

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is a supervisory authority?

A

Regulates what the controllers and processors do with data

If an individual has a complaint, he/she can bring it to the supervisory authority

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are obligations that controllers and processors have in common?

A

Both:

A natural person or body (a legal entity, public authority, agency, or other body)

Have accountability obligations (including keeping records for supervisory authorities)

Share responsibilities with personal data security

Ensure compliance with international data transfers

Subject to large admin fines and compensation claims

How well did you know this?
1
Not at all
2
3
4
5
Perfectly