Terminology Index

Glossary

1801 terms

Open concept maps

Showing 481-512 of 1801 terms

C
11
D
21

DPIA Process

The step-by-step method for conducting a Data Protection Impact Assessment under the GDPR, systematically describing a processing activity, assessing its privacy risks, and identifying measures to reduce them before the processing begins.

The DPIA process walks through assessing a high-risk processing activity: describe what data is processed and why, evaluate necessity and proportionality, identify and rate risks to individuals, and define mitigations, consulting the DPO and, where risk remains high, the regulator. Following the process produces a documented assessment that both reduces privacy risk and evidences compliance. It operationalizes the requirement to assess impact before risky processing.

Introduced in: Privacy Law and GDPR Practice

Examples

  • Documenting a new processing activity's data, purpose, and necessity.
  • Rating privacy risks to individuals and defining mitigations before launch.
  • Consulting the DPO as part of completing the assessment.

No related terms linked yet.