Article 38 EU GDPR "Position of the data protection officer" => Article: 35 => Recital: 97 => administrative fine: Art. 83 (4) lit a => Dossier: Data Protection Officer 1. The controller and the processor shall ensure that the data protection officer is involved, properly and in a timely manner, in all issues which relate to the protection of personal data. Table of Contents Introduction General Data Protection Regulations 2.1 Data Processor 2.2 Service Agreement (Article 28) 2.3 Explicit Instructions (Article 29)
Article 28(2) of the GDPR provides that “[t]he processor shall not engage another processor without prior specific or general written authorization of the controller.” ServiceNow, however, was not listed as an approved sub-processor in the agreement between the municipalities and EG.
2018-04-24 Article 28(2) of the GDPR provides that “[t]he processor shall not engage another processor without prior specific or general written authorization of the controller.” ServiceNow, however, was not listed as an approved sub-processor in the agreement between the municipalities and EG. a contractual agreement in accordance with Art. 28(2-4) GDPR is set as a basis. (3) If the subcontractor provides the agreed service outside the EU/EEA, the Contractor will ensure legitimacy under data protection law by corresponding measures. The same applies if service providers within the meaning of Sect. 1(2) are used.
(172) Europeiska datatillsynsmannen har hörts i enlighet med artikel 28.2 i förordning (EG) nr 45/2001 och avgav ett yttrande den 7 mars 2012
