Data protection impact assessment guidelines in the context of the general data protection regulation
dc.contributor.author | Grütter, Bodo Jeremy | |
dc.contributor.author | Schneider, Bettina | |
dc.contributor.editor | Dermol, Valerij | |
dc.date.accessioned | 2024-04-19T05:22:43Z | |
dc.date.available | 2024-04-19T05:22:43Z | |
dc.date.issued | 2019 | |
dc.description.abstract | The European General Data Protection Regulation (EU GDPR) requires companies to carry out a so-called Data Protection Impact Assessment (DPIA) if the processing of personal data is likely to result in a high risk to the rights and freedoms of individuals. But how can it be determined whether a risk should be considered ‘high’ and thus makes a DPIA necessary? Furthermore, if a DPIA is required, how exactly should this be performed? In response to these questions, various guidelines concerning DPIA have been published. The aim of this paper is to give those affected by the new Data Protection law an insight into three current DPIA guidelines and to support them in implementing a GDPR-compliant impact assessment. To this end, each of the selected guidelines will be described, and evaluated in terms of GDPR compliance and DPIA feasibility, i.e. on the one hand, whether the guideline complies with the relevant GDPR articles, and on the other hand what tools are provided to facilitate the operational execution of a DPIA. The study results in an overall evaluation matrix, which shows that all three guidelines have different strengths and propose differing methods for DPIA implementation. | |
dc.description.uri | https://toknowpress.net/proceedings/978-961-6914-25-3/ | |
dc.event | MakeLearn & TIIM International Conference 2019 | |
dc.event.end | 2019-05-17 | |
dc.event.start | 2019-05-15 | |
dc.identifier.isbn | 978-961-6914-25-3 | |
dc.identifier.uri | https://irf.fhnw.ch/handle/11654/42575 | |
dc.identifier.uri | https://doi.org/10.26041/fhnw-6540 | |
dc.language.iso | en | |
dc.relation.ispartof | Thriving on Future Education, Industry, Business and Society. Proceedings of the MakeLearn and TIIM International Conference | |
dc.rights.uri | https://creativecommons.org/licenses/by-nc-nd/4.0/ | |
dc.spatial | Piran | |
dc.subject.ddc | 330 - Wirtschaft | |
dc.title | Data protection impact assessment guidelines in the context of the general data protection regulation | |
dc.type | 04B - Beitrag Konferenzschrift | |
dspace.entity.type | Publication | |
fhnw.InventedHere | Yes | |
fhnw.ReviewType | Anonymous ex ante peer review of a complete publication | |
fhnw.affiliation.hochschule | Hochschule für Wirtschaft FHNW | de_CH |
fhnw.affiliation.institut | Institut für Wirtschaftsinformatik | de_CH |
fhnw.openAccessCategory | Gold | |
fhnw.pagination | 261-270 | |
fhnw.publicationState | Published | |
relation.isAuthorOfPublication | 323b0cdd-bdb9-4cf1-ac09-730804daff93 | |
relation.isAuthorOfPublication | 464101a1-e779-4cf9-9eaf-4e49af32283a | |
relation.isAuthorOfPublication.latestForDiscovery | 464101a1-e779-4cf9-9eaf-4e49af32283a |
Dateien
Originalbündel
1 - 1 von 1
- Name:
- Gruetter_Schneider_Data_protection_impact_assessment_guidelines_2019.pdf
- Größe:
- 1001.75 KB
- Format:
- Adobe Portable Document Format
Lizenzbündel
1 - 1 von 1
Kein Vorschaubild vorhanden
- Name:
- license.txt
- Größe:
- 1.36 KB
- Format:
- Item-specific license agreed upon to submission
- Beschreibung: