Joint Controllers
What is Joint Controllers?
Two or more entities that jointly determine the purposes and means of processing personal data, sharing data protection responsibilities.
Terms that appear alongside joint controllers
Each of these is named in at least one of the same controls as joint controllers. The number is how many controls name both.
- data protection 14 shared controls
- gdpr 12 shared controls
- data subject 11 shared controls
- compliance 9 shared controls
- audit 8 shared controls
- impact assessment 6 shared controls
- consent 6 shared controls
- cybersecurity 5 shared controls
Frameworks that govern joint controllers
What the standards actually require on joint controllers
Requirements naming joint controllers across 6 standards, quoted from the control text.
Sections 24-26 of the Jamaica DPA 2020 establish the framework for Joint Controllers + Processors + Sub-Processors + and Records of Processing Activities.
JM-DPA2020-Joint-Controller-Processor-Sec24-25-26-Arrangements-Allocation-Responsibilities-Contracts · Jamaica DPA 2020 Joint Controllers + Processors + Sections 24-26 + Arrangements + Allocation of Responsibilities + Contracts + Records of Processing Activities (ROPA) + Sub-Processors + Vendor Management →Where two or more controllers jointly determine the purposes and means of processing, determine their respective responsibilities for compliance in a transparent manner by an arrangement between them, unless those responsibilities are already determined by Uni...
GDPR-Art.26 · Joint controllers →Chapter II Section 7 establishes data security obligations. Controller and processor shall apply appropriate technical + organisational measures + procedures to protect personal data and the privacy rights of data subjects.
HU-INFOTV-Chap2-Security-Section-7-Processor-Joint-Controllers · HU Infotv Chap II - Section 7 Data Security + Processor + Joint Controllers + Breach Notification (Sections 25-25K) →Art.49 data protection by design and by default; Art.50 duty to destroy personal data at end of retention; Art.51 joint data controllers' joint and several responsibilities and transparency to data subjects.
ETH-PDPP-Art.49-51 · Data protection by design and by default; duty to destroy; joint controllers →Italian Codice Privacy security framework supplements GDPR Article 32 with Italian-specific obligations. (1) Article 31 Designation of Chief Privacy Officer (CPO) / Data Protection Officer (DPO): mandatory for (a) public authorities and bodies (with sole exemp...
ItalyCodice-Security-CPO-DPO-PublicBodies-BreachNotification-Art31-34-DPIA-ROPA-JointControllers-Processors · Italy Codice Security - Article 31 Designation of CPO + Italian DPO Requirements + DPO Mandatory for Public Bodies + Article 34 Breach Notification + DPIA + ROPA + Joint Controllers + Processors + Italian-Specific Requirements →Sections 18-19 of the Kenya DPA establish the mandatory registration framework administered by the Office of the Data Protection Commissioner (ODPC).
KE-DPA-Registration-Section18-19-Mandatory-ODPC-Controllers-Processors-Annual-Renewal · Kenya DPA Mandatory Registration with ODPC + Sections 18-19 + Controllers + Processors + Annual Renewal + Registration Categories + Material Change Notification + Exemptions + Public Register →Questions people ask about joint controllers
What is Joint Controllers?
Why is Joint Controllers important for compliance?
Which compliance frameworks address Joint Controllers?
Where can I learn more about Joint Controllers?
See how Joint Controllers applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.