GDPR questions and answers

GDPR: QUESTIONS AND ANSWERS

Category:
GDPR at Work

Is encrypting transmitted electronic messages compliant with the GDPR?

ANSWER

It is entirely appropriate for a controller (employer) to encrypt transmitted electronic messages containing an employee's personal data. Using this type of security measure follows from Article 32(1) GDPR and is lawful.

It should be noted, however, that while encrypting messages containing personal data is highly desirable and appropriate, a PESEL number should not be used as a password, given the relative ease of breaking this type of password.

Read also:

Receive a free package of 4 tutorials and 4 e-learning trainings
The controller of your data is ODO 24 sp. z o. o.
Encrypting emails with personal data under the GDPR | ODO 24 | ODO 24