Appreciate your support to provide me with your advice regarding the following
1. As a processor , should I perform DPIA (is it required)
2. If the controller is not in compliance with the GDPR and didn't share any direction with the data processor (in other words the controller didn't ask the processor to be in compliance with the GDPR). In this case will data processor be liable if any security breach occurs.
3. is it required for the traffic containing PII between a company and service provider to be encrypted.
Assign topic to the user
Please select user.