Search

Your search for 'data protection officers' returned 224 results
Fess search
  1. Frequently asked questions about credit information When is a payment default entry made in the credit information register? You can get a payment default entry in approximately two months from the payment's due date at the earliest. A payment def...
    https://tietosuoja.fi/en/faq-credit-information
  2. Purpose limitation The purpose of processing personal data must be planned and defined clearly before the start of processing. Personal data may only be collected and processed for a specific and lawful purpose. The data may not be processed in a ...
    https://tietosuoja.fi/en/purpose-limitation
  3. Codes of Conduct Codes of conduct are sector-specific guidelines on the application of data protection legislation. They are intended to help organisations comply with data protection requirements with concrete and practical instructions. By commi...
    https://tietosuoja.fi/en/codes-of-conduct
  4. Prior consultation request Prior consultation refers to where a controller needs to consult the competent data protection authority before beginning to process personal data. A prior consultation (premilinary hearing) is required whenever an impac...
    https://tietosuoja.fi/en/prior-consultation-request
  5. Lecture requests The Office of the Data Protection Ombudsman’s experts can be invited to give lectures at training events held by stakeholders and other organisations. As a rule, such lectures are subject to a fee. The fees are based on the Act on...
    https://tietosuoja.fi/en/lecture-requests
  6. Storage limitation Personal data may only be stored for as long as necessary for the purposes of processing. The controller must plan and be able to justify the storage time of the personal data. The storage times of personal data must also be doc...
    https://tietosuoja.fi/en/storage-limitation
  7. Accountability in scientific research The controller must be prepared to demonstrate that data protection regulations have been taken into account in the study. Researchers must document the implementation of data-protection principles and other p...
    https://tietosuoja.fi/en/accountability-in-scientific-research
  8. Frequently asked questions about search engines How do I request that a search result be erased from a search engine? Contact the search engine directly to request the erasure of a search result. Out of the search engines, at least Google and Bing...
    https://tietosuoja.fi/en/faq-search-engines
  9. Processor's record of processing activities Organisations are obligated to draw up a written description of their personal data processing. This description is called a record of processing activities. The obligation to draw up a record of process...
    https://tietosuoja.fi/en/processor-s-record-of-processing-activities
  10. Safeguards to supplement transfer tools The level of protection for personal data must be essentially equivalent to that guaranteed within the EU when transferring data to international organisations and third countries outside the European Econom...
    https://tietosuoja.fi/en/safeguards-to-supplement-transfer-tools
  11. Confidentiality and security The processing of personal data must be confidential and secure. The controller is required to assess the potential risks, the level of the organisation's data protection and data security guidelines, and the technical...
    https://tietosuoja.fi/en/confidentiality-and-security
  12. Everyone has the right to their own personal data
    https://tietosuoja.fi/en/private-persons
  13. Website cookies Cookies are small text files that browsers save on visitors’ devices. Cookies are used to keep the language selection of a user when they navigate between pages, for example. The tietosuoja.fi website uses cookies that are essentia...
    https://tietosuoja.fi/en/cookies
  14. Frequently asked questions about personal identity code Is it permitted to ask for the personal identity code when a guest checks into a hotel? Yes. According to the Act on Accommodation and Food Service Activities (308/2006), an accommodation pro...
    https://tietosuoja.fi/en/faq-personal-identity-code
  15. Derogations for specific situations Article 49 of the General Data Protection Regulation provides for derogations for specific situations. They are a last-resort basis for data transfer, only applicable in exceptional cases . The transfer of data ...
    https://tietosuoja.fi/en/derogations-for-specific-situations
  16. Right to object In certain situations, the data subject has the right to object to the processing of his or her personal data, that is, request the controller not to process it at all. If the data is processed for the performance of a task carried...
    https://tietosuoja.fi/en/right-to-object
  17. Frequently asked questions about the Digital Services Act (DSA) What kinds of operators are subject to the DSA's obligations? The obligations imposed by the Digital Services Act (DSA) apply to all online services, referred to as 'intermediary serv...
    https://tietosuoja.fi/en/digital-services-act-dsa-
  18. Controller's legitimate interests The processing of personal data can sometimes be justified due to the legitimate interests of the controller or a third party. The use of legitimate interests as a basis for processing requires particularly carefu...
    https://tietosuoja.fi/en/controller-s-legitimate-interests
  19. Supervision of codes of conduct The code of conduct must specify a mechanism for the effective monitoring of compliance with the code. Monitoring means ensuring that the controllers and processors committed to compliance with the code follow the p...
    https://tietosuoja.fi/en/supervision-of-codes-of-conduct
  20. Know your rights The EU's General Data Protection Regulation sets down your rights when a company or organisation is processing your personal data. You have the right to obtain information on the processing of your personal data of access to your ...
    https://tietosuoja.fi/en/know-your-rights