Data Subject
What is Data Subject?
An identified or identifiable natural person whose personal data is being processed. Under GDPR, data subjects have extensive rights including access, rectification, erasure, and portability.
Terms that appear alongside data subject
Each of these is named in at least one of the same controls as data subject. The number is how many controls name both.
- data subject rights 209 shared controls
- consent 203 shared controls
- gdpr 146 shared controls
- data protection 82 shared controls
- lawful basis 75 shared controls
- compliance 66 shared controls
- automated decision making 57 shared controls
- transparency 52 shared controls
Frameworks that govern data subject
What the standards actually require on data subject
Requirements naming data subject across 6 standards, quoted from the control text.
Where a personal data breach is likely to result in a high risk to the rights and freedoms of natural persons, communicate the breach to the affected data subjects without undue delay, describing in clear and plain language the nature of the breach and giving...
GDPR-Art.34 · Communication of a personal data breach to the data subject →Standard 6 per Sections 37-43 + the Schedule of the Jamaica Data Protection Act 2020: Personal data shall be processed in accordance with the rights of data subjects under this Act.
JM-DPA2020-Standard6-Subject-Rights-Sec37-43-Access-Correction-Erasure-Portability-Objection-Profiling-Restriction · Jamaica DPA 2020 Standard 6 - Data Subject Rights Enablement + Section 37-43 + Access Right + Correction Right + Erasure Right + Portability Right + Objection Right + Automated Decision-Making Restrictions + Profiling + Restriction Right →A data subject or relevant person may submit a request to any holder, controller or processor to exercise their rights under the Law, and the holder/controller/processor must reply within six working days of submission.
EGY-PDPL-Art.32 · Requests by data subjects →Where a breach is likely to result in high risk to rights and freedoms of data subjects, controllers must notify affected individuals with remedial measures.
Section 37(4) · Breach Notification to Data Subjects →Per nFADP: data subject rights including access + rectification + erasure + restriction + portability + object + automated decision review.
SWISSNFADP-3 · Data Subject Rights →Per CIA: data subject rights including access + correction + restriction + automated decision review.
KRCRED-3 · Data Subject Rights →Questions people ask about data subject
What is Data Subject?
Why is Data Subject important for compliance?
Which compliance frameworks address Data Subject?
Where can I learn more about Data Subject?
See how Data Subject applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.