Data Protection Impact Assessment (DPIA)
What is Data Protection Impact Assessment (DPIA)?
A process required by GDPR Article 35 for assessing the risks of data processing activities that are likely to result in a high risk to individuals' rights and freedoms.
Related terms
Frameworks that govern data protection impact assessment (dpia)
What the standards actually require on data protection impact assessment (dpia)
Requirements naming data protection impact assessment (dpia) across 6 standards, quoted from the control text.
Section 34 of the Jamaica Data Protection Act 2020 establishes Privacy by Design + Privacy by Default + and Data Protection Impact Assessment (DPIA) requirements.
JM-DPA2020-Privacy-by-Design-Default-Sec34-Engineering-Data-Protection-Impact-Assessment-DPIA-Risk-Based · Jamaica DPA 2020 Privacy by Design + Privacy by Default + Section 34 + Data Protection Impact Assessment (DPIA) + Risk-Based + High-Risk Processing + Prior Consultation + Privacy Engineering →Engineering decisions on PETs and other measures should be informed by, and feed back into, the Data Protection Impact Assessment (DPIA): identified high-risk processing drives the engineering measures, and the implemented measures reduce the residual risks re...
ENISA-DPE-2.2 · Connection with the Data Protection Impact Assessment →Article 18 (SECURITY MEASURES) - controllers + processors must implement appropriate TECHNICAL + ORGANIZATIONAL MEASURES proportionate to the nature + scope + purposes + risk of processing to ensure confidentiality + integrity + availability of personal data +...
UAE-PDPL-Art.18_19_20_21 · Security measures, controller/processor relationship, DPIA (UAE PDPL Articles 18-21) →Georgia DPL Controller + Processor + Security obligations. CONTROLLER ACCOUNTABILITY (Art. 27): demonstrate compliance through documented policies + records + impact assessments + reviews. PROCESSOR REQUIREMENTS (Art. 28 - GDPR Art.
GeDPL-Controller-Processor-DPO-RoPA-DPIA · Controller + Processor Obligations + DPO + RoPA + DPIA + Security →Section 25E (added by 2018 GDPR Implementation Act) establishes Data Protection Impact Assessment (DPIA) requirement for processing likely to result in high risk to rights and freedoms of natural persons.
HU-INFOTV-Governance-DPIA-Privacy-by-Design-Risk-Section-25E · HU Infotv Section 25E - Data Protection Impact Assessment + Privacy by Design + Risk + Section 25F Prior Consultation →Security Dimension 8 Privacy per X.805 Clause 6.8: Privacy provides protection of information that might be derived from the observation of network activities.
X805-Dim8-Privacy-Identification-Network-Activity-Personal-Information-Confidentiality · ITU-T X.805 Security Dimension 8 - Privacy + Identification of Network Activity + Personal Information Confidentiality + Subscriber Anonymity + Pseudonymity + Anti-Tracking + Location Privacy + Data Minimization + GDPR/CCPA Alignment →Questions people ask about data protection impact assessment (dpia)
What is Data Protection Impact Assessment (DPIA)?
Why is Data Protection Impact Assessment (DPIA) important for compliance?
What concepts are related to Data Protection Impact Assessment (DPIA)?
Which compliance frameworks address Data Protection Impact Assessment (DPIA)?
Where can I learn more about Data Protection Impact Assessment (DPIA)?
See how Data Protection Impact Assessment (DPIA) applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.