GDPR Chapters Flashcards
Chapter 1
general Provisions
- Subject Matters - objectives
- Material Scope
- Territorial Scope
- Definitions
Chapter 2
Principals
5.Principles regarding processing of Data
6. Lawfulness of processing
7. Conditions for consent
8. conditions applicable to child consents
9. processing of special categories of personal data
10 processing data relating to criminal convicitions
11. processing which does not require identification
Chapter 3
right of data subject
- Section: modalities information and communication obligation and right of data subject
- Transparent information and communication on the right of the data subject
- SECTION: information and access to personal data
13 and 14: Information Obligation
- Information to be provided if data is collected from Data subject direct
- information to be provided if data not obtained from data subject
15. Data subjects right ( 15-22)
- right of access by data subject
SECTION 3: rectification and erasure (16-20)
- right of rectification
- right of erasure (right to be forgotten)
- right to restriction of processing
- OBLIGATION of Notification restriction, erasure, restriction processing
- right to data portability
SECTION 4: right to object automated individual decision making
- right to object
- automated individual decision making including profiling
SECTION 5
23. Restrictions
Chapter 4
controller and processor
SECTION 1 general obligations( 24-31)
- Responsibilities Controller
- Data protection by design or default
- joint controllers
- representatives of controller or processor not established in the Eu
- processor
- processing under the authority of controller or processor
- records of processing activities
- cooperation with supervisory authorities
SECTION 2: Security of personal data
- Security of processing
- notification of data breach to authorities
- communication of personal data breach to data subject
SECTION 3 Data protection impact assessment and prior consultation
- Data protection impact assessment
- Prior Consulting
SECTION 4 Data Protection Officer
- Designation of data protection officer
- position of the data protection officer
- task of the data protection officer
SECTION 5: Code of conducts and certification
40. codes of conducts
41. monitoring of approved codes of conducts
42. certification
43 certification bodies
CHAPTER 5
Transfer of personal data to third country or international organization
- General principles of transfer
- Transfers on the basis of an adequacy decision
- Transfers subject to appropriate safeguards
- Binding corporate rules
- Transfers or disclosures not authorized by Union law
- Derogations for specific situations
- International cooperation for the protection of personal data
CHAPTER 6 (51-59) independent supervisory authorities
SECTION 1: Independent status (Article 51-54)
SECTION 2: Competence, tasks and powers (Article 55-59)
CHAPTER 7
Cooperation and Consistency
SECTION 1
Cooperation
SECTION 2
Consistency
SECTION 3
European data protection board
CHAPTER 8
Remedies, liabilities, penalties
- right to lodge a complain to supervisory authority
- Right to an effective judicial remedy against a supervisory authority
- Right to an effective judicial remedy against a controller or processor
- Representation of data subjects
- Suspension of proceedings
- Right to compensation and liability
- General conditions for imposing administrative fines