17 HANDLING PERSONAL DATA BREACHES
Stewart Room and Ben Johnson
This chapter examines the legal and operational requirements for security within the GDPR and the duties of transparency that apply to personal data breaches, which trigger obligations to notify regulators and to issue communications to impacted individuals.
THE LEGAL OBLIGATION TO BE SECURE
The security regime within the GDPR consists of the following parts:
- The sixth data protection principle in A.5.1.f says that personal data shall be processed in a manner that ensures appropriate security of the personal data. It also sets out a non-exhaustive list of the protections that need to be achieved for personal data undergoing processing. The sixth data protection principle is ...
Get Data Protection and Compliance, 2nd Edition now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.