Regulation Supervision and Enforcement-key provisions Flashcards
Information about right of complaint-after exercise of rights
12(4) If controllers do not take action in response to the exercise of individuals’ rights, they shall inform those individuals that they can lodge complaints with the regulators and seek judicial remedies.
Info about right of complaint-general transparency
13(2)(d) and 14(2)(e)
As part of the rules about transparency, controllers must inform individuals that they can lodge complaints with the regulators.
Info about right of compliant-in response to subject access
15(1)(f) When replying to subject access requests, controllers must inform individuals that they can lodge complaints with the regulators.
cooperation w/ regulators and individuals-by representatives
27(4) Representatives shall be mandated to deal with individuals and the regulators about compliance issues.
Processors-supervision by controllers
28 Controllers are required to ensure compliance by their processors, through selection mechanisms, provision of instructions, contractual mechanisms and inspections.
Record keeping-processing activities
30(4) Controllers, processors and their representatives shall make their records of data processing activities available to the regulators on request.
cooperation with regulators
31 Controllers, processors and their representatives shall cooperate with regulators on request.
Breach notification
33(1) and 34(1) Controllers shall inform regulators of personal data breaches and shall inform individuals if there are high risks to their rights and freedoms