←  Zurück
Lexikon

DSGVO / AVV

**Data protection law and the contract governing data processing agreements.**

Definition

The General Data Protection Regulation (GDPR) governs the handling of personal data across the EU. If a service provider processes such data on behalf of a client, Article 28 GDPR requires a Data Processing Agreement (DPA) that sets out obligations, rights of instruction, technical and organisational measures (TOMs), and the handling of sub-processors. The client remains responsible under data protection law and must therefore carefully select and monitor their service provider. DPAs and TOM documentation are among the most frequently requested items in questionnaires.

was für Dienstleister bedeutet

For service providers, GDPR and DPAs are a recurring topic: virtually every client requires a signed DPA along with evidence of technical and organisational measures. The questions on this subject are almost identical from client to client, yet they are answered anew each time. Additional follow-up questions on sub-processors, storage locations, and deletion concepts are also common. Those who keep DPA templates and TOM responses readily at hand can complete the data protection section of any audit in minutes.

Wie kann tendry helfen

With Tendry, you answer GDPR- and DPA-related questions from verified knowledge and have TOM documentation immediately at hand. This allows you to complete the data protection section of every client audit quickly and consistently.

Was andere leser auch interessiert
No items found.