![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjYNzr1aEvJ4iREC8nAKVVjVxqhAHuFEfiMADbUbYaP04Oaax_2-dCbKJDGMmc4pkRjJ3dzFdTdJn2-8_VmZuGV25tXiQAoS26QVZqhIjktyfzhhNU3bSHQbE_ARUuImToqt_YAcQ/s320/2017-11-17_08-42-54-482.png)
The basic principles of the General Data Privacy Regulation state that the collection of personal data shall be done lawfully, fairly and in a transparent manner. It must be for a specified, explicit and legitimate purpose. It must be adequate, relevant, limited, accurate, with 'storage limitation' and in a manner that ensures appropriate security of the personal data.
As GDPRtoons cleverly illustrated, a Controller and/or Processor has the responsibility of balancing six basic principles involving the collection of personal data, all while being able to demonstrate compliance.
No comments:
Post a Comment