• Contact us 020 4525 3748
  • Have a question? [email protected]
  • IT Blog
  • Contact Us
  • Support
IP Four Digital
  • Home
  • Our Services
    • iconManaged IT
    • iconIT Support
    • iconCyber Security
    • All Services
IP Four Digital
  • Home
  • Our Services
    • iconManaged IT
    • iconIT Support
    • iconCyber Security
    • All Services

GDPR

  • What is the difference between a data processor and a data controller under the GDPR?
  • Can organisations share a DPO (data protection officer)?
  • What is the difference between personal data and sensitive data under the GDPR?
  • What is a data breach under the GDPR?
  • How does the GDPR affect businesses outside the EU?
  • How does the GDPR define personal data?
  • What sort of data processing does the GDPR apply to?
  • Which organisations must appoint a DPO (data protection officer) under the GDPR?
  • ICO Registration Check
  • Does my organisation need to register under the GDPR?
  • What lawful bases for processing should we use, and do we always need consent?
  • How do you comply with Article 30 of the GDPR?
  • What rights do individuals (data subjects) have under the GDPR?
  • What are the GDPR’s rules on security?
  • What are the GDPR’s data processing principles?
  • What happens if I have missed the GDPR enforcement deadline?
  • What are the penalties for not complying with the GDPR?
  • How do you report a personal data breach?
  • How do you write a GDPR personal data breach notification procedure?
  • How do you write a GDPR-compliant data protection policy?
  • How do you write a GDPR data subject access request procedure?
  • How do you write a GDPR privacy notice?
  • Do I need a lot of documents to comply with the GDPR?
  • What does ‘GDPR compliant’ mean?
  • What qualifications does a DPO need?
  • Do I have to appoint a DPO internally?
  • How will Brexit affect the GDPR?
  • What are the legal requirements for the DPO role?
  • Who needs to appoint a data protection officer?
  • The DPO’s tasks
  • The DPO’s role and responsibilities
  • What does a DPO do?
  • What is a privacy compliance framework?
  • How does the GDPR relate to the DPA 2018 (Data Protection Act 2018)?
  • When did the GDPR take effect?
  • Where can I find the full text of the GDPR?
  • GDPR penalties and fines
  • What does GDPR stand for?
  • What is a DSAR?
  • What is the right of access?
  • Articles of the GDPR
  • What is the GDPR?
  • What is the difference between EU regulations and directives?

ISO27001

  • What is ISO 27001?

Cyber Essentials

  • The benefits of Cyber Essentials certification 
  • Completing the Cyber Essentials self-assessment questionnaire
  • What is in scope of the Cyber Essentials scheme?
  • How do we define the scope?
  • How do we renew our Cyber Essentials certificate?
  • Where can we display our Cyber Essentials certificate?
  • What can we expect from the Cyber Essentials application process?
  • How long will it take between submitting our online SAQ and receiving our certificate?
  • Who will conduct the assessments for Cyber Essentials?
  • What is required for certification to Cyber Essentials Plus?
  • What is required for certification to Cyber Essentials?
  • Why should we get a Cyber Essentials certificate?
  • Cyber Essentials changes 2022
  • Main Site
  • Help Centre
  • GDPR

Articles of the GDPR

Chapter I – General provisions

  • Article 1 – Subject-matter and objectives
  • Article 2 – Material scope
  • Article 3 – Territorial scope
  • Article 4 – Definitions

Chapter II – Principles

  • Article 5 – Principles relating to processing of personal data
  • Article 6 – Lawfulness of processing
  • Article 7 – Conditions for consent
  • Article 8 – Conditions applicable to child’s consent in relation to information society services
  • Article 9 – Processing of special categories of personal data
  • Article 10 – Processing of personal data relating to criminal convictions and offences
  • Article 11 – Processing which does not require identification

Chapter III – Rights of the data subject

Section 1 – Transparency and modalities 

  • Article 12 – Transparent information, communication and modalities for the exercise of the rights of the data subject

Section 2 – Information and access to personal data

  • Article 13 – Information to be provided where personal data are collected from the data subject
  • Article 14 – Information to be provided where personal data have not been obtained from the data subject 
  • Article 15 – Right of access by the data subject

Section 3 – Rectification and erasure

  • Article 16 – Right to rectification
  • Article 17 – Right to erasure (‘right to be forgotten’)
  • Article 18 – Right to restriction of processing
  • Article 19 – Notification obligation regarding rectification or erasure of personal data or restriction of processing
  • Article 20 – Right to data portability

Section 4 – Right to object and automated individual decision-making

  • Article 21 – Right to object
  • Article 22 – Automated individual decision-making, including profiling

Section 5 – Restrictions

  • Article 23 – Restrictions

Chapter IV – Controller and processor

Section 1 – General obligations

  • Article 24 – Responsibility of the controller
  • Article 25 – Data protection by design and by default
  • Article 26 – Joint controllers
  • Article 27 – Representatives of controllers or processors not established in the Union
  • Article 28 – Processor
  • Article 29 – Processing under the authority of the controller or processor
  • Article 30 – Records of processing activities
  • Article 31 – Cooperation with the supervisory authority

Section 2 – Security of personal data

  • Article 32 – Security of processing
  • Article 33 – Notification of a personal data breach to the supervisory authority
  • Article 34 – Communication of a personal data breach to the data subject

Section 3 – Data protection impact assessment and prior consultation

  • Article 35 – Data protection impact assessment
  • Article 36 – Prior consultation

Section 4 – Data protection officer

  • Article 37 – Designation of the data protection officer
  • Article 38 – Position of the data protection officer
  • Article 39 – Tasks of the data protection officer

Section 5 – Codes of conduct and certification

  • Article 40 – Codes of conduct
  • Article 41 – Monitoring of approved codes of conduct
  • Article 42 – Certification
  • Article 43 – Certification bodies

Chapter V – Transfers of personal data to third countries or international organisations

  • Article 44 – General principle for transfers
  • Article 45 – Transfers on the basis of an adequacy decision
  • Article 46 – Transfers subject to appropriate safeguards
  • Article 47 – Binding corporate rules
  • Article 48 – Transfers or disclosures not authorised by Union law
  • Article 49 – Derogations for specific situations
  • Article 50 – International cooperation for the protection of personal data

Chapter VI – Independent supervisory authorities

Section 1 – Independent status

  • Article 51 – Supervisory authority
  • Article 52 – Independence
  • Article 53 – General conditions for the members of the supervisory authority
  • Article 54 – Rules on the establishment of the supervisory authority

Section 2 – Competence, tasks and powers

  • Article 55 – Competence
  • Article 56 – Competence of the lead supervisory authority
  • Article 57 – Tasks
  • Article 58 – Powers
  • Article 59 – Activity reports

Chapter VII – Cooperation and consistency

Section 1 – Cooperation

  • Article 60 – Cooperation between the lead supervisory authority and the other supervisory authorities concerned
  • Article 61 – Mutual assistance
  • Article 62 – Joint operations of supervisory authorities

Section 2 – Consistency

  • Article 63 – Consistency mechanism
  • Article 64 – Opinion of the Board
  • Article 65 – Dispute resolution by the Board
  • Article 66 – Urgency procedure
  • Article 67 – Exchange of information

Section 3 – European data protection board

  • Article 68 – European Data Protection Board
  • Article 69 – Independence
  • Article 70 – Tasks of the Board
  • Article 71 – Reports
  • Article 72 – Procedure
  • Article 73 – Chair
  • Article 74 – Tasks of the Chair
  • Article 75 – Secretariat
  • Article 76 – Confidentiality

Chapter VIII – Remedies, liability and penalties

  • Article 77 – Right to lodge a complaint with a supervisory authority
  • Article 78 – Right to an effective judicial remedy against a supervisory authority
  • Article 79 – Right to an effective judicial remedy against a controller or processor
  • Article 80 – Representation of data subjects
  • Article 81 – Suspension of proceedings
  • Article 82 – Right to compensation and liability
  • Article 83 – General conditions for imposing administrative fines
  • Article 84 – Penalties

Chapter IX – Provisions relating to specific processing situations

  • Article 85 – Processing and freedom of expression and information
  • Article 86 – Processing and public access to official documents
  • Article 87 – Processing of the national identification number
  • Article 88 – Processing in the context of employment
  • Article 89 – Safeguards and derogations relating to processing for archiving purposes in the public interest, scientific or historical research purposes or statistical purposes
  • Article 90 – Obligations of secrecy
  • Article 91 – Existing data protection rules of churches and religious associations

Chapter X – Delegated acts and implementing acts

  • Article 92 – Exercise of the delegation
  • Article 93 – Committee procedure

Chapter XI – Final provisions

  • Article 94 – Repeal of Directive 95/46/EC
  • Article 95 – Relationship with Directive 2002/58/EC
  • Article 96 – Relationship with previously concluded Agreements
  • Article 97 – Commission reports
  • Article 98 – Review of other Union legal acts on data protection
  • Article 99 – Entry into force and application
What are your Feelings
Share This Article :
  • Facebook
  • Twitter
  • LinkedIn
  • Pinterest
Updated on February 16, 2022
What is the right of access?What is the GDPR?

IP Four Digital is an IT & digital support company based in Burnley, Lancashire.

Address: Off Empire Way, Liverpool Road, Burnley, BB126HA,  Lancashire, UK
Phone: 020 4525 3748 | Mail: [email protected]

  • IT Support
  • Cyber Security
  • Managed IT
  • IT Consultancy
  • Cloud Computing
  • Compliance & Regulatory
  • Submit A Ticket
  • Contact Us
  • About
  • Privacy
  • Help Centre
  • vCISO Services
  • IASME Governance Standard
  • Why is IT Support Important?
  • Log4j – What Is it?
  • Cyber Essentials
Copyright © 2020 IP Four Digital Limited. Company Registration Number 12599318.
  • Home
  • Services
    • Managed IT
    • IT Support
    • IT Consultancy
    • Cloud Computing
    • Cyber Security
    • Custom Software
    • All Services
  • News & Advice
  • Contact Us
  • Submit Ticket