Organisational Requirements
摘要
The GDPR sets high organisational requirements. While controllers are the ones primarily responsible for complying with the data protection standards of the Regulation, the GDPR also imposes certain obligations on processors. This chapter sets out the various organisational requirements under the GDPR, including the allocation of responsibilities between controllers and processors, preventive data protection concepts and the Regulation’s risk-based approach.