Data Protection
What is Data Protection?
The set of strategies and processes used to secure the privacy, availability, and integrity of data throughout its lifecycle.
Terms that appear alongside data protection
Each of these is named in at least one of the same controls as data protection. The number is how many controls name both.
- gdpr 179 shared controls
- consent 108 shared controls
- compliance 107 shared controls
- data protection officer 89 shared controls
- data subject 82 shared controls
- governance 74 shared controls
- impact assessment 72 shared controls
- audit 61 shared controls
Frameworks that govern data protection
What the standards actually require on data protection
Requirements naming data protection across 6 standards, quoted from the control text.
Sections 45-50 of the Jamaica Data Protection Act 2020 establish the complaints and enforcement framework. (1) Section 45 Right to Complain: (a) data subject may complain to OIC against controller or processor;
JM-DPA2020-Complaints-Enforcement-Sec45-50-Investigation-Hearing-Determination-Appeal-Tribunal · Jamaica DPA 2020 Complaints + Enforcement + Sections 45-50 + Complaint Procedure + Investigation + Hearing + Determination + Compliance Orders + Administrative Penalties + Data Protection Tribunal + High Court Appeals →Ensure the data protection officer is involved, properly and in a timely manner, in all issues which relate to the protection of personal data.
GDPR-Art.38 · Position of the data protection officer →Appointment of representative for foreign controllers and data protection advisors
FADP-9 · Data Protection Advisor (Articles 14-15) →Provide internal and external channels for staff and contractors to report suspected breaches of the Act without fear of reprisal, with protection against retaliation and a documented investigation procedure.
ZDPA-18 · Whistleblowing on Data Protection Failures →Requires the controlling authority to implement data protection by design and by default and to meet general obligations for law-enforcement processing.
CZ-110-§32 · Zamerna a standardni ochrana osobnich udaju (data protection by design and default) →Engineering decisions on PETs and other measures should be informed by, and feed back into, the Data Protection Impact Assessment (DPIA): identified high-risk processing drives the engineering measures, and the implemented measures reduce the residual risks re...
ENISA-DPE-2.2 · Connection with the Data Protection Impact Assessment →Questions people ask about data protection
What is Data Protection?
Why is Data Protection important for compliance?
Which compliance frameworks address Data Protection?
Where can I learn more about Data Protection?
See how Data Protection applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.