Day 02 - S+E-TZ-Western Balkans+EPR.pdf

Support for Improvement in Governance and Management  SIGMA
Support for Improvement in Governance and Management SIGMA Senior Adviser, Strategy and Reform à Support for Improvement in Governance and Management SIGMA
EUROPEAN
DATA
PROTECTION
SUPERVISOR
The EU’s independent data
protection authority
The EDPS Supervision and
Enforcement Unit (S&E)
Thomas ZERDICK, LL.M.
Head of Unit of S&E
thomas.zerdick@edps.europa.eu
19 September 2023
What the EDPS does
2
Regulation (EU) 2018/1725 [EDPR]
Chapter I General Provisions Regulation (EU) 2016/679 [GDPR]
Chapter II General Principles Regulation (EU) 2016/679 [GDPR]
Chapter III Rights of the Data Subject Regulation (EU) 2016/679 [GDPR]
Chapter IV Controller and Processor
Section 2 Security of personal data (Art. 33-35)
Section 3 Confidentiality of electronic communications
Regulation (EU) 2016/679 [GDPR]
Section 2 Security of personal data (Art. 32-34)
Directive 2002/58/EC [e-Privacy]*
Chapter V Transfers of personal data to third countries or
international organisations
Regulation (EU) 2016/679 [GDPR]
Chapter VI European Data Protection Supervisor Regulation (EU) 2016/679 [GDPR]
Chapter VII Cooperation and Consistency Regulation (EU) 2016/679 [GDPR]
Chapter VIII Remedies, Liability And Penalties Regulation (EU) 2016/679 [GDPR]
Chapter IX Processing of operational personal data by Union
bodies, offices and agencies when carrying out activities
which fall within the scope of Chapter 4 or Chapter 5 of
Title V of Part Three TFEU
Personal data breaches (Art. 92+93)
Data Protection Directive (EU) 2016/680
for Police and Law enforcement [LED]
Chapter X Implementing Acts Regulation (EU) 2016/679 [GDPR]
Chapter XI Review Regulation (EU) 2016/679 [GDPR]
Chapter XII Final provisions Regulation (EU) 2016/679 [GDPR]
4
5
S&E
Enforcement
Data Protection
culture
Supervision
What the S&E does
6
ADVISE
advise data
subjects,
controllers,
consultations on
administrative
measures and
internal rules,
issue own
initiative opinions,
awareness raising;
INVESTIGATE
investigations,
audits, obtain
access to
premises, order
controller to give
information;
CORRECT
issue warnings,
reprimands, refer
matter to the
European
Parliament, order
rectification or
erasure; impose
administrative
fines;
REFER
matters to the
Court of Justice of
the EU and
INTERVENE;
COOPERATE
with national
supervisory
authorities.
7
Investigative
powers
Corrective
powers
Authorisation &
advisory powers
Check compliance
• complaints
• investigations
• audits
• inspections
Sanction
• warning
• reprimand
• referral to
controller
• ban on
processing
• administrative
fine
Advise
• consultations
• visits
• trainings
• guidelines
Our tools
Consultations and audits sector
8
consultations on
administrative
matters
DPIA
Audits/visits
54 consultations in
2021
Thematic guidelines 8 FTE
Day 02 -  S+E-TZ-Western Balkans+EPR.pdf
Complaints and investigations sector
10
Schrems II strategy
Investigation into
‘Cloud II’ infrastructure
contracts
Investigation into
Commission’s use of
Microsoft 365
more than 300
complaints in 2021
Court proceedings
(interventions in staff
cases)
7 FTE
C&I
11
240
151
203
270
302
227
48
59
43 50
65
44
0
50
100
150
200
250
300
350
1 2 3 4 5 6
complaints received 2018-2023
Series1 Series2
Day 02 -  S+E-TZ-Western Balkans+EPR.pdf
• Europol,
• Eurojust
• European Border and
Coast Guard Agency
(Frontex)
• European Public
Prosecutor Office (EPPO)
AFSJ sector
13
EDPS - Europol statistics 2021
Day 02 -  S+E-TZ-Western Balkans+EPR.pdf
EDPS resources
Supervision & enforcement
overview:
• https://edps.europa.eu/data-
protection/our-role-
supervisor_en
EDPS Investigation Policy:
• https://edps.europa.eu/data-
protection/our-work/our-work-
by-type/investigations_en
Complaints:
https://edps.europa.eu/data-
protection/our-role-
supervisor/complaints_en
Guidance:
• https://edps.europa.eu/data-
protection/our-work/our-work-
by-type/guidelines_en
1 sur 15

Recommandé

GDPR Day 2018 - GDPR Pain Points par
GDPR Day 2018 - GDPR Pain PointsGDPR Day 2018 - GDPR Pain Points
GDPR Day 2018 - GDPR Pain PointsGDPR Day
329 vues17 diapositives
The Privacy Advantage 2016 - Wojciech Wiewiorowski par
The Privacy Advantage 2016 - Wojciech WiewiorowskiThe Privacy Advantage 2016 - Wojciech Wiewiorowski
The Privacy Advantage 2016 - Wojciech WiewiorowskiKrowdthink
312 vues20 diapositives
Why GDPR Must Be an Integral Part of Your GRC Framework par
Why GDPR Must Be an Integral Part of Your GRC FrameworkWhy GDPR Must Be an Integral Part of Your GRC Framework
Why GDPR Must Be an Integral Part of Your GRC FrameworkPECB
1K vues41 diapositives
Data Protection - GDPR - Lantern fundforum 2017 Leonardi Andrea - Michelotti ... par
Data Protection - GDPR - Lantern fundforum 2017 Leonardi Andrea - Michelotti ...Data Protection - GDPR - Lantern fundforum 2017 Leonardi Andrea - Michelotti ...
Data Protection - GDPR - Lantern fundforum 2017 Leonardi Andrea - Michelotti ...Andrea Leonardi
106 vues30 diapositives
"Legal tips and compliance requirements" - Anastasia Botsi, ICT Legal par
"Legal tips and compliance requirements" - Anastasia Botsi, ICT Legal"Legal tips and compliance requirements" - Anastasia Botsi, ICT Legal
"Legal tips and compliance requirements" - Anastasia Botsi, ICT LegalCyber Watching
127 vues19 diapositives
EU Data Protection, Legislation and Certification par
EU Data Protection, Legislation and Certification EU Data Protection, Legislation and Certification
EU Data Protection, Legislation and Certification CRISP Project
159 vues12 diapositives

Contenu connexe

Similaire à Day 02 - S+E-TZ-Western Balkans+EPR.pdf

Introduction to GDPR par
Introduction to GDPRIntroduction to GDPR
Introduction to GDPRMartyn Ripley
21 vues8 diapositives
Data Flow Mapping and the EU GDPR par
Data Flow Mapping and the EU GDPRData Flow Mapping and the EU GDPR
Data Flow Mapping and the EU GDPRIT Governance Ltd
8.4K vues34 diapositives
20150610 febelmar privacy matters eu regulation par
20150610 febelmar privacy matters eu regulation20150610 febelmar privacy matters eu regulation
20150610 febelmar privacy matters eu regulationFebelmar
285 vues26 diapositives
Revising policies and procedures under the new EU GDPR par
Revising policies and procedures under the new EU GDPRRevising policies and procedures under the new EU GDPR
Revising policies and procedures under the new EU GDPRIT Governance Ltd
4.9K vues32 diapositives
EU GDPR(general data protection regulation) par
EU GDPR(general data protection regulation)EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)RAKESH S
334 vues10 diapositives
Gdpr presentation-february-24t par
Gdpr presentation-february-24tGdpr presentation-february-24t
Gdpr presentation-february-24tMark Drinkwater
26 vues15 diapositives

Similaire à Day 02 - S+E-TZ-Western Balkans+EPR.pdf(20)

20150610 febelmar privacy matters eu regulation par Febelmar
20150610 febelmar privacy matters eu regulation20150610 febelmar privacy matters eu regulation
20150610 febelmar privacy matters eu regulation
Febelmar285 vues
Revising policies and procedures under the new EU GDPR par IT Governance Ltd
Revising policies and procedures under the new EU GDPRRevising policies and procedures under the new EU GDPR
Revising policies and procedures under the new EU GDPR
IT Governance Ltd4.9K vues
EU GDPR(general data protection regulation) par RAKESH S
EU GDPR(general data protection regulation)EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)
RAKESH S334 vues
EU GDPR and you: requirements for marketing par IT Governance Ltd
EU GDPR and you: requirements for marketingEU GDPR and you: requirements for marketing
EU GDPR and you: requirements for marketing
IT Governance Ltd1.7K vues
CyNation: 7 Things You Should Know about EU GDPR par Iryna Chekanava
CyNation: 7 Things You Should Know about EU GDPRCyNation: 7 Things You Should Know about EU GDPR
CyNation: 7 Things You Should Know about EU GDPR
Iryna Chekanava747 vues
CyNation - 7 things you should know about EU-GDPR par Shadi A. Razak
CyNation - 7 things you should know about EU-GDPRCyNation - 7 things you should know about EU-GDPR
CyNation - 7 things you should know about EU-GDPR
Shadi A. Razak298 vues
GDPR - New European Union Legislation par Tekwill
GDPR - New European Union LegislationGDPR - New European Union Legislation
GDPR - New European Union Legislation
Tekwill54 vues
General Data Protection Regulations (GDPR) Summary par Compliance3
General Data Protection Regulations (GDPR) Summary General Data Protection Regulations (GDPR) Summary
General Data Protection Regulations (GDPR) Summary
Compliance3 531 vues
Regulation (EU) 2016_679_GDPR_Overview_June 2016 par John Greenwood
Regulation (EU) 2016_679_GDPR_Overview_June 2016Regulation (EU) 2016_679_GDPR_Overview_June 2016
Regulation (EU) 2016_679_GDPR_Overview_June 2016
John Greenwood216 vues
Getting the Deal Through: Data Protection and Privacy, Ireland 2018 par Hazel Murray
Getting the Deal Through: Data Protection and Privacy, Ireland 2018 Getting the Deal Through: Data Protection and Privacy, Ireland 2018
Getting the Deal Through: Data Protection and Privacy, Ireland 2018
Hazel Murray120 vues
#FIRMday Manchester Autumn 2017 - The General Data Protection Regulation (GDP... par Emma Mirrington
#FIRMday Manchester Autumn 2017 - The General Data Protection Regulation (GDP...#FIRMday Manchester Autumn 2017 - The General Data Protection Regulation (GDP...
#FIRMday Manchester Autumn 2017 - The General Data Protection Regulation (GDP...
Emma Mirrington306 vues

Plus de Support for Improvement in Governance and Management SIGMA

Omnichannel management, by Willem Pieterson - SIGMA Webinars on service desig... par
Omnichannel management, by Willem Pieterson - SIGMA Webinars on service desig...Omnichannel management, by Willem Pieterson - SIGMA Webinars on service desig...
Omnichannel management, by Willem Pieterson - SIGMA Webinars on service desig...Support for Improvement in Governance and Management SIGMA
5 vues61 diapositives
eZdravlje, by Vladimir Raickovic - SIGMA Webinars on service design and deliv... par
eZdravlje, by Vladimir Raickovic - SIGMA Webinars on service design and deliv...eZdravlje, by Vladimir Raickovic - SIGMA Webinars on service design and deliv...
eZdravlje, by Vladimir Raickovic - SIGMA Webinars on service design and deliv...Support for Improvement in Governance and Management SIGMA
3 vues17 diapositives
E-Gov, by Emir Ramadanovic (bih) - SIGMA Webinars on service design and deliv... par
E-Gov, by Emir Ramadanovic (bih) - SIGMA Webinars on service design and deliv...E-Gov, by Emir Ramadanovic (bih) - SIGMA Webinars on service design and deliv...
E-Gov, by Emir Ramadanovic (bih) - SIGMA Webinars on service design and deliv...Support for Improvement in Governance and Management SIGMA
4 vues11 diapositives
PPT - SIGMA-GIZ Academies - Topic 4 - 1.1 - Germany Life Events Survey - EXT.pdf par
PPT - SIGMA-GIZ Academies - Topic 4 - 1.1 - Germany Life Events Survey - EXT.pdfPPT - SIGMA-GIZ Academies - Topic 4 - 1.1 - Germany Life Events Survey - EXT.pdf
PPT - SIGMA-GIZ Academies - Topic 4 - 1.1 - Germany Life Events Survey - EXT.pdfSupport for Improvement in Governance and Management SIGMA
6 vues24 diapositives
PPT - SIGMA-GIZ Academies - Topic 4 - Amenia - Citizen Feedback Platform.pdf par
PPT - SIGMA-GIZ Academies - Topic 4 - Amenia - Citizen Feedback Platform.pdfPPT - SIGMA-GIZ Academies - Topic 4 - Amenia - Citizen Feedback Platform.pdf
PPT - SIGMA-GIZ Academies - Topic 4 - Amenia - Citizen Feedback Platform.pdfSupport for Improvement in Governance and Management SIGMA
41 vues8 diapositives
PPT - SIGMA-GIZ Academies - Topic 4 - Azerbaijan - Public Service Design.pdf par
PPT - SIGMA-GIZ Academies - Topic 4 - Azerbaijan - Public Service Design.pdfPPT - SIGMA-GIZ Academies - Topic 4 - Azerbaijan - Public Service Design.pdf
PPT - SIGMA-GIZ Academies - Topic 4 - Azerbaijan - Public Service Design.pdfSupport for Improvement in Governance and Management SIGMA
41 vues37 diapositives

Plus de Support for Improvement in Governance and Management SIGMA (20)

Dernier

COP 28 GHANA DELEGATES.docx par
COP 28 GHANA DELEGATES.docxCOP 28 GHANA DELEGATES.docx
COP 28 GHANA DELEGATES.docxKweku Zurek
6.5K vues23 diapositives
How to Find Contractors and Architects for Your Historic Home Renovation par
How to Find Contractors and Architects for Your Historic Home RenovationHow to Find Contractors and Architects for Your Historic Home Renovation
How to Find Contractors and Architects for Your Historic Home RenovationNational Trust for Historic Preservation
181 vues8 diapositives
Managing drinking water infrastructure in West Bengal Gram Panchayats_Sujata ... par
Managing drinking water infrastructure in West Bengal Gram Panchayats_Sujata ...Managing drinking water infrastructure in West Bengal Gram Panchayats_Sujata ...
Managing drinking water infrastructure in West Bengal Gram Panchayats_Sujata ...India Water Portal
9 vues12 diapositives
Cover Letter for Canada VISITOR visa.pdf par
Cover Letter for Canada VISITOR visa.pdfCover Letter for Canada VISITOR visa.pdf
Cover Letter for Canada VISITOR visa.pdfAriful Saimon
8 vues2 diapositives
Mrs. Tsitsi Makombe - 2023 ReSAKSS Conference par
Mrs. Tsitsi Makombe - 2023 ReSAKSS Conference Mrs. Tsitsi Makombe - 2023 ReSAKSS Conference
Mrs. Tsitsi Makombe - 2023 ReSAKSS Conference AKADEMIYA2063
9 vues8 diapositives
Dr. Paul Guthiga - 2023 ReSAKSS Conference.pptx par
Dr. Paul Guthiga - 2023 ReSAKSS Conference.pptxDr. Paul Guthiga - 2023 ReSAKSS Conference.pptx
Dr. Paul Guthiga - 2023 ReSAKSS Conference.pptxAKADEMIYA2063
5 vues20 diapositives

Dernier(20)

COP 28 GHANA DELEGATES.docx par Kweku Zurek
COP 28 GHANA DELEGATES.docxCOP 28 GHANA DELEGATES.docx
COP 28 GHANA DELEGATES.docx
Kweku Zurek6.5K vues
Managing drinking water infrastructure in West Bengal Gram Panchayats_Sujata ... par India Water Portal
Managing drinking water infrastructure in West Bengal Gram Panchayats_Sujata ...Managing drinking water infrastructure in West Bengal Gram Panchayats_Sujata ...
Managing drinking water infrastructure in West Bengal Gram Panchayats_Sujata ...
Cover Letter for Canada VISITOR visa.pdf par Ariful Saimon
Cover Letter for Canada VISITOR visa.pdfCover Letter for Canada VISITOR visa.pdf
Cover Letter for Canada VISITOR visa.pdf
Ariful Saimon8 vues
Mrs. Tsitsi Makombe - 2023 ReSAKSS Conference par AKADEMIYA2063
Mrs. Tsitsi Makombe - 2023 ReSAKSS Conference Mrs. Tsitsi Makombe - 2023 ReSAKSS Conference
Mrs. Tsitsi Makombe - 2023 ReSAKSS Conference
AKADEMIYA20639 vues
Dr. Paul Guthiga - 2023 ReSAKSS Conference.pptx par AKADEMIYA2063
Dr. Paul Guthiga - 2023 ReSAKSS Conference.pptxDr. Paul Guthiga - 2023 ReSAKSS Conference.pptx
Dr. Paul Guthiga - 2023 ReSAKSS Conference.pptx
AKADEMIYA20635 vues
AABS project overview par WorldFish
AABS project overviewAABS project overview
AABS project overview
WorldFish32 vues
Mr. Kenao Lao - 2023 ReSAKSS Conference.pptx par AKADEMIYA2063
 Mr. Kenao Lao - 2023 ReSAKSS Conference.pptx Mr. Kenao Lao - 2023 ReSAKSS Conference.pptx
Mr. Kenao Lao - 2023 ReSAKSS Conference.pptx
AKADEMIYA20637 vues
Answer to UNESCO – Youth Employment Through Heritage and Culture in Yemen par Kevin Lognoné
Answer to UNESCO – Youth Employment Through Heritage and Culture in YemenAnswer to UNESCO – Youth Employment Through Heritage and Culture in Yemen
Answer to UNESCO – Youth Employment Through Heritage and Culture in Yemen
Dr. John Ulimwengu - 2023 ReSAKSS Conference.pptx par AKADEMIYA2063
Dr. John Ulimwengu - 2023 ReSAKSS Conference.pptxDr. John Ulimwengu - 2023 ReSAKSS Conference.pptx
Dr. John Ulimwengu - 2023 ReSAKSS Conference.pptx
AKADEMIYA20638 vues
Mapping location and co-location of industries at the neighborhood level - A... par OECD CFE
Mapping location and co-location of industries at the neighborhood level  - A...Mapping location and co-location of industries at the neighborhood level  - A...
Mapping location and co-location of industries at the neighborhood level - A...
OECD CFE7 vues
Arrow Adoption Training for Kinship Families par ArrowMarketing
Arrow Adoption Training for Kinship FamiliesArrow Adoption Training for Kinship Families
Arrow Adoption Training for Kinship Families
ArrowMarketing42 vues

Day 02 - S+E-TZ-Western Balkans+EPR.pdf

  • 1. EUROPEAN DATA PROTECTION SUPERVISOR The EU’s independent data protection authority The EDPS Supervision and Enforcement Unit (S&E) Thomas ZERDICK, LL.M. Head of Unit of S&E thomas.zerdick@edps.europa.eu 19 September 2023
  • 2. What the EDPS does 2
  • 3. Regulation (EU) 2018/1725 [EDPR] Chapter I General Provisions Regulation (EU) 2016/679 [GDPR] Chapter II General Principles Regulation (EU) 2016/679 [GDPR] Chapter III Rights of the Data Subject Regulation (EU) 2016/679 [GDPR] Chapter IV Controller and Processor Section 2 Security of personal data (Art. 33-35) Section 3 Confidentiality of electronic communications Regulation (EU) 2016/679 [GDPR] Section 2 Security of personal data (Art. 32-34) Directive 2002/58/EC [e-Privacy]* Chapter V Transfers of personal data to third countries or international organisations Regulation (EU) 2016/679 [GDPR] Chapter VI European Data Protection Supervisor Regulation (EU) 2016/679 [GDPR] Chapter VII Cooperation and Consistency Regulation (EU) 2016/679 [GDPR] Chapter VIII Remedies, Liability And Penalties Regulation (EU) 2016/679 [GDPR] Chapter IX Processing of operational personal data by Union bodies, offices and agencies when carrying out activities which fall within the scope of Chapter 4 or Chapter 5 of Title V of Part Three TFEU Personal data breaches (Art. 92+93) Data Protection Directive (EU) 2016/680 for Police and Law enforcement [LED] Chapter X Implementing Acts Regulation (EU) 2016/679 [GDPR] Chapter XI Review Regulation (EU) 2016/679 [GDPR] Chapter XII Final provisions Regulation (EU) 2016/679 [GDPR]
  • 4. 4
  • 6. What the S&E does 6 ADVISE advise data subjects, controllers, consultations on administrative measures and internal rules, issue own initiative opinions, awareness raising; INVESTIGATE investigations, audits, obtain access to premises, order controller to give information; CORRECT issue warnings, reprimands, refer matter to the European Parliament, order rectification or erasure; impose administrative fines; REFER matters to the Court of Justice of the EU and INTERVENE; COOPERATE with national supervisory authorities.
  • 7. 7 Investigative powers Corrective powers Authorisation & advisory powers Check compliance • complaints • investigations • audits • inspections Sanction • warning • reprimand • referral to controller • ban on processing • administrative fine Advise • consultations • visits • trainings • guidelines Our tools
  • 8. Consultations and audits sector 8 consultations on administrative matters DPIA Audits/visits 54 consultations in 2021 Thematic guidelines 8 FTE
  • 10. Complaints and investigations sector 10 Schrems II strategy Investigation into ‘Cloud II’ infrastructure contracts Investigation into Commission’s use of Microsoft 365 more than 300 complaints in 2021 Court proceedings (interventions in staff cases) 7 FTE
  • 11. C&I 11 240 151 203 270 302 227 48 59 43 50 65 44 0 50 100 150 200 250 300 350 1 2 3 4 5 6 complaints received 2018-2023 Series1 Series2
  • 13. • Europol, • Eurojust • European Border and Coast Guard Agency (Frontex) • European Public Prosecutor Office (EPPO) AFSJ sector 13 EDPS - Europol statistics 2021
  • 15. EDPS resources Supervision & enforcement overview: • https://edps.europa.eu/data- protection/our-role- supervisor_en EDPS Investigation Policy: • https://edps.europa.eu/data- protection/our-work/our-work- by-type/investigations_en Complaints: https://edps.europa.eu/data- protection/our-role- supervisor/complaints_en Guidance: • https://edps.europa.eu/data- protection/our-work/our-work- by-type/guidelines_en