CyberTRIZPEDIA

Conduct Data Protection Impact Assessments for High-Risk Processing

Control
GDPR-DPIA-001
Regulation
GDPR
Category
operational
Priority
high
Frequency
annually
Type
operational

What this control requires

Implement DPIA procedures for all new high-risk processing activities including: systematic profiling, large-scale processing of special category data, systematic monitoring of public areas, and processing likely to result in high risk. Consult the DPO in all cases. Seek prior consultation with APD/GBA where residual risk remains high.

Other GDPR controls