Who does the GDPR apply to?

Who does the GDPR apply to?

  • The GDPR applies to ‘controllers’ and ‘processors’. 
  • A controller determines the purposes and means of processing personal data.
  • A processor is responsible for processing personal data on behalf of a controller.
  • If you are a processor, the GDPR places specific legal obligations on you; for example, you are required to maintain records of personal data and processing activities. You will have legal liability if you are responsible for a breach.
  • However, if you are a controller, you are not relieved of your obligations where a processor is involved – the GDPR places further obligations on you to ensure your contracts with processors comply with the GDPR.
  • The GDPR applies to processing carried out by organisations operating within the EU. It also applies to organisations outside the EU that offer goods or services to individuals in the EU.
  • The GDPR does not apply to certain activities including processing covered by the Law Enforcement Directive, processing for national security purposes and processing carried out by individuals purely for personal/household activities.


要查看或添加评论,请登录

Shivam Kapoor的更多文章

  • Citrix Vulnerability exposed

    Citrix Vulnerability exposed

    Cyber Security Blogs With the on-going various cyber-attacks across the world now Citrix Products have come under the…

    1 条评论
  • Experience Vs Skill

    Experience Vs Skill

    There always has been a lot of debate whether a company should hire an experienced candidate for a job role or a person…

  • Difference Between Software Compliance and Software Asset Management

    Difference Between Software Compliance and Software Asset Management

    Software License Compliance is focused on avoiding ‘under-licensing’, by ensuring compliance with license entitlements…

社区洞察

其他会员也浏览了