Day 02 - S+E-TZ-Western Balkans+EPR.pdf

Support for Improvement in Governance and Management  SIGMA
Support for Improvement in Governance and Management SIGMA Senior Adviser, Strategy and Reform um Support for Improvement in Governance and Management SIGMA
EUROPEAN
DATA
PROTECTION
SUPERVISOR
The EU’s independent data
protection authority
The EDPS Supervision and
Enforcement Unit (S&E)
Thomas ZERDICK, LL.M.
Head of Unit of S&E
thomas.zerdick@edps.europa.eu
19 September 2023
What the EDPS does
2
Regulation (EU) 2018/1725 [EDPR]
Chapter I General Provisions Regulation (EU) 2016/679 [GDPR]
Chapter II General Principles Regulation (EU) 2016/679 [GDPR]
Chapter III Rights of the Data Subject Regulation (EU) 2016/679 [GDPR]
Chapter IV Controller and Processor
Section 2 Security of personal data (Art. 33-35)
Section 3 Confidentiality of electronic communications
Regulation (EU) 2016/679 [GDPR]
Section 2 Security of personal data (Art. 32-34)
Directive 2002/58/EC [e-Privacy]*
Chapter V Transfers of personal data to third countries or
international organisations
Regulation (EU) 2016/679 [GDPR]
Chapter VI European Data Protection Supervisor Regulation (EU) 2016/679 [GDPR]
Chapter VII Cooperation and Consistency Regulation (EU) 2016/679 [GDPR]
Chapter VIII Remedies, Liability And Penalties Regulation (EU) 2016/679 [GDPR]
Chapter IX Processing of operational personal data by Union
bodies, offices and agencies when carrying out activities
which fall within the scope of Chapter 4 or Chapter 5 of
Title V of Part Three TFEU
Personal data breaches (Art. 92+93)
Data Protection Directive (EU) 2016/680
for Police and Law enforcement [LED]
Chapter X Implementing Acts Regulation (EU) 2016/679 [GDPR]
Chapter XI Review Regulation (EU) 2016/679 [GDPR]
Chapter XII Final provisions Regulation (EU) 2016/679 [GDPR]
4
5
S&E
Enforcement
Data Protection
culture
Supervision
What the S&E does
6
ADVISE
advise data
subjects,
controllers,
consultations on
administrative
measures and
internal rules,
issue own
initiative opinions,
awareness raising;
INVESTIGATE
investigations,
audits, obtain
access to
premises, order
controller to give
information;
CORRECT
issue warnings,
reprimands, refer
matter to the
European
Parliament, order
rectification or
erasure; impose
administrative
fines;
REFER
matters to the
Court of Justice of
the EU and
INTERVENE;
COOPERATE
with national
supervisory
authorities.
7
Investigative
powers
Corrective
powers
Authorisation &
advisory powers
Check compliance
• complaints
• investigations
• audits
• inspections
Sanction
• warning
• reprimand
• referral to
controller
• ban on
processing
• administrative
fine
Advise
• consultations
• visits
• trainings
• guidelines
Our tools
Consultations and audits sector
8
consultations on
administrative
matters
DPIA
Audits/visits
54 consultations in
2021
Thematic guidelines 8 FTE
Day 02 -  S+E-TZ-Western Balkans+EPR.pdf
Complaints and investigations sector
10
Schrems II strategy
Investigation into
‘Cloud II’ infrastructure
contracts
Investigation into
Commission’s use of
Microsoft 365
more than 300
complaints in 2021
Court proceedings
(interventions in staff
cases)
7 FTE
C&I
11
240
151
203
270
302
227
48
59
43 50
65
44
0
50
100
150
200
250
300
350
1 2 3 4 5 6
complaints received 2018-2023
Series1 Series2
Day 02 -  S+E-TZ-Western Balkans+EPR.pdf
• Europol,
• Eurojust
• European Border and
Coast Guard Agency
(Frontex)
• European Public
Prosecutor Office (EPPO)
AFSJ sector
13
EDPS - Europol statistics 2021
Day 02 -  S+E-TZ-Western Balkans+EPR.pdf
EDPS resources
Supervision & enforcement
overview:
• https://edps.europa.eu/data-
protection/our-role-
supervisor_en
EDPS Investigation Policy:
• https://edps.europa.eu/data-
protection/our-work/our-work-
by-type/investigations_en
Complaints:
https://edps.europa.eu/data-
protection/our-role-
supervisor/complaints_en
Guidance:
• https://edps.europa.eu/data-
protection/our-work/our-work-
by-type/guidelines_en
1 von 15

Recomendados

GDPR Day 2018 - GDPR Pain Points von
GDPR Day 2018 - GDPR Pain PointsGDPR Day 2018 - GDPR Pain Points
GDPR Day 2018 - GDPR Pain PointsGDPR Day
329 views17 Folien
The Privacy Advantage 2016 - Wojciech Wiewiorowski von
The Privacy Advantage 2016 - Wojciech WiewiorowskiThe Privacy Advantage 2016 - Wojciech Wiewiorowski
The Privacy Advantage 2016 - Wojciech WiewiorowskiKrowdthink
312 views20 Folien
Why GDPR Must Be an Integral Part of Your GRC Framework von
Why GDPR Must Be an Integral Part of Your GRC FrameworkWhy GDPR Must Be an Integral Part of Your GRC Framework
Why GDPR Must Be an Integral Part of Your GRC FrameworkPECB
1K views41 Folien
Data Protection - GDPR - Lantern fundforum 2017 Leonardi Andrea - Michelotti ... von
Data Protection - GDPR - Lantern fundforum 2017 Leonardi Andrea - Michelotti ...Data Protection - GDPR - Lantern fundforum 2017 Leonardi Andrea - Michelotti ...
Data Protection - GDPR - Lantern fundforum 2017 Leonardi Andrea - Michelotti ...Andrea Leonardi
106 views30 Folien
"Legal tips and compliance requirements" - Anastasia Botsi, ICT Legal von
"Legal tips and compliance requirements" - Anastasia Botsi, ICT Legal"Legal tips and compliance requirements" - Anastasia Botsi, ICT Legal
"Legal tips and compliance requirements" - Anastasia Botsi, ICT LegalCyber Watching
127 views19 Folien
EU Data Protection, Legislation and Certification von
EU Data Protection, Legislation and Certification EU Data Protection, Legislation and Certification
EU Data Protection, Legislation and Certification CRISP Project
159 views12 Folien

Más contenido relacionado

Similar a Day 02 - S+E-TZ-Western Balkans+EPR.pdf

Introduction to GDPR von
Introduction to GDPRIntroduction to GDPR
Introduction to GDPRMartyn Ripley
21 views8 Folien
Data Flow Mapping and the EU GDPR von
Data Flow Mapping and the EU GDPRData Flow Mapping and the EU GDPR
Data Flow Mapping and the EU GDPRIT Governance Ltd
8.4K views34 Folien
20150610 febelmar privacy matters eu regulation von
20150610 febelmar privacy matters eu regulation20150610 febelmar privacy matters eu regulation
20150610 febelmar privacy matters eu regulationFebelmar
285 views26 Folien
Revising policies and procedures under the new EU GDPR von
Revising policies and procedures under the new EU GDPRRevising policies and procedures under the new EU GDPR
Revising policies and procedures under the new EU GDPRIT Governance Ltd
4.9K views32 Folien
EU GDPR(general data protection regulation) von
EU GDPR(general data protection regulation)EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)RAKESH S
334 views10 Folien
Gdpr presentation-february-24t von
Gdpr presentation-february-24tGdpr presentation-february-24t
Gdpr presentation-february-24tMark Drinkwater
26 views15 Folien

Similar a Day 02 - S+E-TZ-Western Balkans+EPR.pdf(20)

20150610 febelmar privacy matters eu regulation von Febelmar
20150610 febelmar privacy matters eu regulation20150610 febelmar privacy matters eu regulation
20150610 febelmar privacy matters eu regulation
Febelmar285 views
Revising policies and procedures under the new EU GDPR von IT Governance Ltd
Revising policies and procedures under the new EU GDPRRevising policies and procedures under the new EU GDPR
Revising policies and procedures under the new EU GDPR
IT Governance Ltd4.9K views
EU GDPR(general data protection regulation) von RAKESH S
EU GDPR(general data protection regulation)EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)
RAKESH S334 views
EU GDPR and you: requirements for marketing von IT Governance Ltd
EU GDPR and you: requirements for marketingEU GDPR and you: requirements for marketing
EU GDPR and you: requirements for marketing
IT Governance Ltd1.7K views
CyNation: 7 Things You Should Know about EU GDPR von Iryna Chekanava
CyNation: 7 Things You Should Know about EU GDPRCyNation: 7 Things You Should Know about EU GDPR
CyNation: 7 Things You Should Know about EU GDPR
Iryna Chekanava746 views
CyNation - 7 things you should know about EU-GDPR von Shadi A. Razak
CyNation - 7 things you should know about EU-GDPRCyNation - 7 things you should know about EU-GDPR
CyNation - 7 things you should know about EU-GDPR
Shadi A. Razak298 views
GDPR - New European Union Legislation von Tekwill
GDPR - New European Union LegislationGDPR - New European Union Legislation
GDPR - New European Union Legislation
Tekwill54 views
General Data Protection Regulations (GDPR) Summary von Compliance3
General Data Protection Regulations (GDPR) Summary General Data Protection Regulations (GDPR) Summary
General Data Protection Regulations (GDPR) Summary
Compliance3 531 views
Regulation (EU) 2016_679_GDPR_Overview_June 2016 von John Greenwood
Regulation (EU) 2016_679_GDPR_Overview_June 2016Regulation (EU) 2016_679_GDPR_Overview_June 2016
Regulation (EU) 2016_679_GDPR_Overview_June 2016
John Greenwood216 views
Getting the Deal Through: Data Protection and Privacy, Ireland 2018 von Hazel Murray
Getting the Deal Through: Data Protection and Privacy, Ireland 2018 Getting the Deal Through: Data Protection and Privacy, Ireland 2018
Getting the Deal Through: Data Protection and Privacy, Ireland 2018
Hazel Murray120 views
#FIRMday Manchester Autumn 2017 - The General Data Protection Regulation (GDP... von Emma Mirrington
#FIRMday Manchester Autumn 2017 - The General Data Protection Regulation (GDP...#FIRMday Manchester Autumn 2017 - The General Data Protection Regulation (GDP...
#FIRMday Manchester Autumn 2017 - The General Data Protection Regulation (GDP...
Emma Mirrington306 views

Más de Support for Improvement in Governance and Management SIGMA

Launch of the Principles of Public Administration - 6 Nov 2023 - Photo gallery von
Launch of the Principles of Public Administration - 6 Nov 2023 - Photo galleryLaunch of the Principles of Public Administration - 6 Nov 2023 - Photo gallery
Launch of the Principles of Public Administration - 6 Nov 2023 - Photo gallerySupport for Improvement in Governance and Management SIGMA
1.1K views32 Folien
Day 02 - Meeting DPAs from Western Balkans and Eastern Partnership countries von
Day 02 -  Meeting DPAs from Western Balkans and Eastern Partnership countriesDay 02 -  Meeting DPAs from Western Balkans and Eastern Partnership countries
Day 02 - Meeting DPAs from Western Balkans and Eastern Partnership countriesSupport for Improvement in Governance and Management SIGMA
266 views17 Folien

Más de Support for Improvement in Governance and Management SIGMA (20)

Último

Dr Jean Paul Latyr FAYE - 2023 ReSAKSS Conference.pptx von
Dr Jean Paul Latyr FAYE - 2023 ReSAKSS Conference.pptxDr Jean Paul Latyr FAYE - 2023 ReSAKSS Conference.pptx
Dr Jean Paul Latyr FAYE - 2023 ReSAKSS Conference.pptxAKADEMIYA2063
6 views24 Folien
Taking care of the elders von
Taking care of the eldersTaking care of the elders
Taking care of the eldersSERUDS INDIA
6 views6 Folien
How to Find Contractors and Architects for Your Historic Home Renovation von
How to Find Contractors and Architects for Your Historic Home RenovationHow to Find Contractors and Architects for Your Historic Home Renovation
How to Find Contractors and Architects for Your Historic Home RenovationNational Trust for Historic Preservation
57 views8 Folien
Ms. Julie Collins - 2023 ReSAKSS Conference.pptx von
Ms. Julie Collins - 2023 ReSAKSS Conference.pptxMs. Julie Collins - 2023 ReSAKSS Conference.pptx
Ms. Julie Collins - 2023 ReSAKSS Conference.pptxAKADEMIYA2063
8 views18 Folien
Support a Child Bright Future kurnool von
Support a Child Bright Future kurnoolSupport a Child Bright Future kurnool
Support a Child Bright Future kurnoolSERUDS INDIA
8 views3 Folien
Creation of Policy, Ordinance, Minutes of Meeting and Activity Design for San... von
Creation of Policy, Ordinance, Minutes of Meeting and Activity Design for San...Creation of Policy, Ordinance, Minutes of Meeting and Activity Design for San...
Creation of Policy, Ordinance, Minutes of Meeting and Activity Design for San...AlvaroTojongDioquino
15 views17 Folien

Último(20)

Dr Jean Paul Latyr FAYE - 2023 ReSAKSS Conference.pptx von AKADEMIYA2063
Dr Jean Paul Latyr FAYE - 2023 ReSAKSS Conference.pptxDr Jean Paul Latyr FAYE - 2023 ReSAKSS Conference.pptx
Dr Jean Paul Latyr FAYE - 2023 ReSAKSS Conference.pptx
AKADEMIYA20636 views
Ms. Julie Collins - 2023 ReSAKSS Conference.pptx von AKADEMIYA2063
Ms. Julie Collins - 2023 ReSAKSS Conference.pptxMs. Julie Collins - 2023 ReSAKSS Conference.pptx
Ms. Julie Collins - 2023 ReSAKSS Conference.pptx
AKADEMIYA20638 views
Support a Child Bright Future kurnool von SERUDS INDIA
Support a Child Bright Future kurnoolSupport a Child Bright Future kurnool
Support a Child Bright Future kurnool
SERUDS INDIA8 views
Creation of Policy, Ordinance, Minutes of Meeting and Activity Design for San... von AlvaroTojongDioquino
Creation of Policy, Ordinance, Minutes of Meeting and Activity Design for San...Creation of Policy, Ordinance, Minutes of Meeting and Activity Design for San...
Creation of Policy, Ordinance, Minutes of Meeting and Activity Design for San...
Permit & Zoning Tech 2023 1116.pdf von NorthwestBOCA
Permit & Zoning Tech 2023 1116.pdfPermit & Zoning Tech 2023 1116.pdf
Permit & Zoning Tech 2023 1116.pdf
NorthwestBOCA54 views
Arrow Adoption Training for Kinship Families von ArrowMarketing
Arrow Adoption Training for Kinship FamiliesArrow Adoption Training for Kinship Families
Arrow Adoption Training for Kinship Families
ArrowMarketing39 views
Moving up into upper secondary by Hannah Kitchen - OECD Education Webinar 23N... von EduSkills OECD
Moving up into upper secondary by Hannah Kitchen - OECD Education Webinar 23N...Moving up into upper secondary by Hannah Kitchen - OECD Education Webinar 23N...
Moving up into upper secondary by Hannah Kitchen - OECD Education Webinar 23N...
EduSkills OECD81 views
2023 First Tee - Greater Richmond Holiday Gift Guide von bill151498
2023 First Tee - Greater Richmond Holiday Gift Guide2023 First Tee - Greater Richmond Holiday Gift Guide
2023 First Tee - Greater Richmond Holiday Gift Guide
bill15149880 views
Sponsor for Child Bright Future von SERUDS INDIA
Sponsor for Child Bright FutureSponsor for Child Bright Future
Sponsor for Child Bright Future
SERUDS INDIA10 views
IEA Report: The Oil and Gas Industry in NetZero Transitions von Energy for One World
IEA Report: The Oil and Gas Industry in NetZero TransitionsIEA Report: The Oil and Gas Industry in NetZero Transitions
IEA Report: The Oil and Gas Industry in NetZero Transitions
2023 Veterans Day Exhibit.pptx von lday4
2023 Veterans Day Exhibit.pptx2023 Veterans Day Exhibit.pptx
2023 Veterans Day Exhibit.pptx
lday448 views
How can the social and solidarity economy help refugees along their journey? von OECD CFE
How can the social and solidarity economy help refugees along their journey?How can the social and solidarity economy help refugees along their journey?
How can the social and solidarity economy help refugees along their journey?
OECD CFE63 views
2023-11-17-building_inspector_posting (1).pdf von NorthwestBOCA
2023-11-17-building_inspector_posting (1).pdf2023-11-17-building_inspector_posting (1).pdf
2023-11-17-building_inspector_posting (1).pdf
NorthwestBOCA54 views
Dr. Ousmane Badiane - 2023 ReSAKSS Conference.pptx von AKADEMIYA2063
Dr. Ousmane Badiane - 2023 ReSAKSS Conference.pptxDr. Ousmane Badiane - 2023 ReSAKSS Conference.pptx
Dr. Ousmane Badiane - 2023 ReSAKSS Conference.pptx
AKADEMIYA20636 views

Day 02 - S+E-TZ-Western Balkans+EPR.pdf

  • 1. EUROPEAN DATA PROTECTION SUPERVISOR The EU’s independent data protection authority The EDPS Supervision and Enforcement Unit (S&E) Thomas ZERDICK, LL.M. Head of Unit of S&E thomas.zerdick@edps.europa.eu 19 September 2023
  • 2. What the EDPS does 2
  • 3. Regulation (EU) 2018/1725 [EDPR] Chapter I General Provisions Regulation (EU) 2016/679 [GDPR] Chapter II General Principles Regulation (EU) 2016/679 [GDPR] Chapter III Rights of the Data Subject Regulation (EU) 2016/679 [GDPR] Chapter IV Controller and Processor Section 2 Security of personal data (Art. 33-35) Section 3 Confidentiality of electronic communications Regulation (EU) 2016/679 [GDPR] Section 2 Security of personal data (Art. 32-34) Directive 2002/58/EC [e-Privacy]* Chapter V Transfers of personal data to third countries or international organisations Regulation (EU) 2016/679 [GDPR] Chapter VI European Data Protection Supervisor Regulation (EU) 2016/679 [GDPR] Chapter VII Cooperation and Consistency Regulation (EU) 2016/679 [GDPR] Chapter VIII Remedies, Liability And Penalties Regulation (EU) 2016/679 [GDPR] Chapter IX Processing of operational personal data by Union bodies, offices and agencies when carrying out activities which fall within the scope of Chapter 4 or Chapter 5 of Title V of Part Three TFEU Personal data breaches (Art. 92+93) Data Protection Directive (EU) 2016/680 for Police and Law enforcement [LED] Chapter X Implementing Acts Regulation (EU) 2016/679 [GDPR] Chapter XI Review Regulation (EU) 2016/679 [GDPR] Chapter XII Final provisions Regulation (EU) 2016/679 [GDPR]
  • 4. 4
  • 6. What the S&E does 6 ADVISE advise data subjects, controllers, consultations on administrative measures and internal rules, issue own initiative opinions, awareness raising; INVESTIGATE investigations, audits, obtain access to premises, order controller to give information; CORRECT issue warnings, reprimands, refer matter to the European Parliament, order rectification or erasure; impose administrative fines; REFER matters to the Court of Justice of the EU and INTERVENE; COOPERATE with national supervisory authorities.
  • 7. 7 Investigative powers Corrective powers Authorisation & advisory powers Check compliance • complaints • investigations • audits • inspections Sanction • warning • reprimand • referral to controller • ban on processing • administrative fine Advise • consultations • visits • trainings • guidelines Our tools
  • 8. Consultations and audits sector 8 consultations on administrative matters DPIA Audits/visits 54 consultations in 2021 Thematic guidelines 8 FTE
  • 10. Complaints and investigations sector 10 Schrems II strategy Investigation into ‘Cloud II’ infrastructure contracts Investigation into Commission’s use of Microsoft 365 more than 300 complaints in 2021 Court proceedings (interventions in staff cases) 7 FTE
  • 11. C&I 11 240 151 203 270 302 227 48 59 43 50 65 44 0 50 100 150 200 250 300 350 1 2 3 4 5 6 complaints received 2018-2023 Series1 Series2
  • 13. • Europol, • Eurojust • European Border and Coast Guard Agency (Frontex) • European Public Prosecutor Office (EPPO) AFSJ sector 13 EDPS - Europol statistics 2021
  • 15. EDPS resources Supervision & enforcement overview: • https://edps.europa.eu/data- protection/our-role- supervisor_en EDPS Investigation Policy: • https://edps.europa.eu/data- protection/our-work/our-work- by-type/investigations_en Complaints: https://edps.europa.eu/data- protection/our-role- supervisor/complaints_en Guidance: • https://edps.europa.eu/data- protection/our-work/our-work- by-type/guidelines_en