I need a template. Are all data Processing Agreements the same or depends to the data processing service?
GDPR Supervisory Authority in Africa
I run a consulting firm out of Nigeria offering IT GRC services to firms across the African continent, kindly advise on how I determine my supervisory authority?
Change of data processor/GDPR compliance
We are GDPR compliant and have the ISO 27001 certification. We have just terminated an agreement with a data processor. Do we legally need to inform our clients and customer that we have terminated that data sub processor agreement?
Processor GDPR Compliance Questionnaire template
I have a question about the use of your Processor GDPR Compliance Questionnaire template. Specifically, I need to know whether this questionnaire is intended for use with all new suppliers or with existing suppliers in our due diligence efforts to comply with GDPR. In other words, now that everybody should have been GDPR ready for some time, should we still use this when entering new supplier agreements?
Maintaining GDPR documentation
1. My company intends to use a list of customers' personal data to create custom audiences on Facebook. We would need to conduct the DPIA and the Inventory of Processing Activities, correct?
GDPR processor question
My company provides support for an customer's ERP system in Europe. The system is hosted through us on the Amazon Web Services (AWS) cloud. AWS is fully GDPR compliant. We do not process any customer data directly - we only provide application support services and all with written confirmation from customer. Further, we have internal policies in place that control all access to view any customer data and tracking to ensure no one can do anything with it. I am looking into what we would need to do to be more compliant.
EU GDPR and Supervisory Authority
1. I will like to know how to determine which supervisory authority I am under if I am an organization outside the EU but have reason to handle EU subject data from time to time. (What volume of EU subject data processing makes it rational for me to undertake GDPR compliance?)
How to implement GDPR in big companies?
I have subsidiary companies based in the EU and UK and our HQ is in Asia, plus several other subsidiary companies in other countries. We are implementing the GDPR now. My question is, do we keep different versions of the GDPR documents (1 for each subsidiary) or should we only maintain 1 main copy that covers all the subsidiaries?
EU GDPR and scrapping data
1. Hello, I am just trying to launch my startup. It is based on the development of an application. Among other things, this application aims at scraping people's data from public sources. Thus I have a few questions. What should I do to scrap aligned to GDPR?
EU GDPR and its reach
1. Does a national from Asia dealing with a supplier in EU need to do a DPIA with the corresponding supplier?