GDPR questions and answers

GDPR: QUESTIONS AND ANSWERS

Category:
Incidents and Fines

Should breaches of personal data protection provisions, such as the failure to use information clauses, that were identified during an audit be entered in the breach register?

ANSWER

No, non-compliance with personal data protection provisions, such as missing information clauses, should be recorded in the audit report, not in the breach register. The breach register contains only "personal data breaches", meaning security breaches leading to accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or unauthorized access to personal data.

Read also:

Receive a free package of 4 tutorials and 4 e-learning trainings
The controller of your data is ODO 24 sp. z o. o.
Non-compliance found during audit — enter in breach register? | ODO 24 | ODO 24