Unlock AI Compliance: Master the new EU AI Act with our comprehensive guide.

Compartir

4 min read

Writen by Adam

Posted on: January 15, 2021

Key GDPR terms you need to know

GDPR, the General Data Protect Regulation, is an incredibly large piece of legislation. Reading it, and understanding it, can take hours upon hours of study. However, understanding GDPR Rin its entirety is vital to avoid data breaches and hefty fines.

You may often see words such as processing or subject access requests and be unsure how these relate to data. We have put together a useful list of the most commonly used phrases to help you understand GDPR and data protection authorities better and to ensure your data is safe and secure.

  • Processing – Any action performed on individual personal data or data sets. Examples of this are but not limited too; adaptation, changing, gathering, recording, organisation, structuring, storage, retrieval, consultation, use, transmission, dissemination, restriction, erasure or destruction.
  • Data Subject – Data that pertains to an individual. This can be any person as they are easily and clearly identifiable from the data in question.
  • Personal Data– Any information related to an individual or ‘Data Subject’, that can be used to identify the person. Examples of this could be; phone number, name, address or banking information.
  • Subject Access Requests – When Data Subjects request to receive a copy of data you have about them.
  • Data Controller – Decides the reason for personal data to be processed and how to process it. This role can be performed by an individual or team dependant on the amount of personal data you intend to process.
  • Data Processor – Third parties that process data on behalf of the Data Controller, includes IT services.
  • Data Protection Officer – Responsible for data protection and GDPR compliance within your business. DPO’s are not always necessary, however, you will need one if: your business is a public authority; you engage in large amounts of systematic monitoring of individuals; you carry out large-scale processing of special categories of data; or process data relating to criminal convictions and offences.
  • Cross-Border Processing– Processing data in a single establishment in the Union, but that affects data subjects from more than one Member State. Or, the processing of personal data when the controller or processor is in more than one Member State and the processing takes place in more than one Member State.
  • Consent – Freely given, unambiguous and informed indication of the data subject’s wishes by a statement of affirmative action and agreement to the processing of their personal data.
  • Personal data breach – A security breach that results in an accidental or illegal loss, alteration, unauthorised disclosure of, destruction, or access to, personal data that has been processed, sent or stored.
  • ICO– Stands for Information Commissioners Office. The ICO is the UK’s independent body set up to uphold information rights. Uphold information rights in the public interest, promoting openness by public bodies and data privacy for individuals. Use to report personal data breaches, apply for grants and stay up to date with current legislation.
  • DPA – The Data Protection Act (2018). The Data Protection Act 2018 is the UK’s implementation of the General Data Protection Regulation (GDPR). Read more on the Government Website.

Whilst there are many more important terms left to learn, this list provides a good introduction to the key terms you’ll encounter when working with GDPR law and data.

Póngase en contacto con nosotros

Esperamos que le resulte útil. Si necesita un representante de la UE, tiene alguna pregunta sobre el GDPR o ha recibido una solicitud de SAR o del regulador y necesita ayuda, póngase en contacto con nosotros en cualquier momento. Estaremos encantados de ayudarle...
Equipo local de GDPR.

Póngase en contacto con nosotros

Recent blogs

Navigating the Contradictions: Automated Decision-Making and Regulatory Legislation in AI Systems

The Dilemma of Automated Decision-Making At the heart of AI systems lies the promise of aut

How to Implement the New AI Law in Your Company

The implementation of the AI Act marks a significant stride towards responsible and fair use of art

Article 14 Guide: Meeting Regulatory Requirements for Personal Data Not Directly Obtained from Data Subjects

Imagine a software-as-a-service (SaaS) company looking to grow its clientele by purchasing leads fr

Obtenga su cuenta ahora

Configúrelo en unos minutos. Introduzca los datos de su empresa y elija los servicios que necesita.

Crear una cuenta

Póngase en contacto

¿No está seguro de qué opción elegir? Llámenos, envíenos un correo electrónico o chatee con nosotros
en cualquier momento.

Póngase en contacto con nosotros
06 INFORMACIÓN SOBRE EL GDPR

Manténgase al día

Deje aquí sus datos y le enviaremos actualizaciones e información sobre todos los aspectos del RGPD y la Representación de la UE. No le bombardearemos con correos electrónicos y podrá decirnos que dejemos de hacerlo en cualquier momento.

El nombre completo es obligatorio.

El correo electrónico profesional es obligatorio.

¡Se requiere compañía!

Por favor, acepte los Términos y Condiciones y la Política de Privacidad