Search
- Fess search
Showing 121 to 140 of 281 entries.
-
Frequently asked questions about credit information When is a payment default entry made in the credit information register? You can get a payment default entry in approximately two months from the payment's due date at the earliest. A payment def...https://tietosuoja.fi/en/faq-credit-information
-
Prior consultation request Prior consultation refers to where a controller needs to consult the competent data protection authority before beginning to process personal data. A prior consultation (premilinary hearing) is required whenever an impac...https://tietosuoja.fi/en/prior-consultation-request
-
Codes of Conduct Codes of conduct are sector-specific guidelines on the application of data protection legislation. They are intended to help organisations comply with data protection requirements with concrete and practical instructions. By commi...https://tietosuoja.fi/en/codes-of-conduct
-
Safeguards to supplement transfer tools The level of protection for personal data must be essentially equivalent to that guaranteed within the EU when transferring data to international organisations and third countries outside the European Econom...https://tietosuoja.fi/en/safeguards-to-supplement-transfer-tools
-
Lecture requests The Office of the Data Protection Ombudsman’s experts can be invited to give lectures at training events held by stakeholders and other organisations. As a rule, such lectures are subject to a fee. The fees are based on the Act on...https://tietosuoja.fi/en/lecture-requests
-
Everyone has the right to their own personal datahttps://tietosuoja.fi/en/private-persons
-
Confidentiality and security The processing of personal data must be confidential and secure. The controller is required to assess the potential risks, the level of the organisation's data protection and data security guidelines, and the technical...https://tietosuoja.fi/en/confidentiality-and-security
-
Processor's record of processing activities Organisations are obligated to draw up a written description of their personal data processing. This description is called a record of processing activities. The obligation to draw up a record of process...https://tietosuoja.fi/en/processor-s-record-of-processing-activities
-
Accountability in scientific research The controller must be prepared to demonstrate that data protection regulations have been taken into account in the study. Researchers must document the implementation of data-protection principles and other p...https://tietosuoja.fi/en/accountability-in-scientific-research
-
Website cookies Cookies are small text files that browsers save on visitors’ devices. Cookies are used to keep the language selection of a user when they navigate between pages, for example. The tietosuoja.fi website uses cookies that are essentia...https://tietosuoja.fi/en/cookies
-
Right to object In certain situations, the data subject has the right to object to the processing of his or her personal data, that is, request the controller not to process it at all. If the data is processed for the performance of a task carried...https://tietosuoja.fi/en/right-to-object
-
Derogations for specific situations Article 49 of the General Data Protection Regulation provides for derogations for specific situations. They are a last-resort basis for data transfer, only applicable in exceptional cases . The transfer of data ...https://tietosuoja.fi/en/derogations-for-specific-situations
-
Controller's legitimate interests The processing of personal data can sometimes be justified due to the legitimate interests of the controller or a third party. The use of legitimate interests as a basis for processing requires particularly carefu...https://tietosuoja.fi/en/controller-s-legitimate-interests
-
Frequently asked questions about personal identity code Is it permitted to ask for the personal identity code when a guest checks into a hotel? Yes. According to the Act on Accommodation and Food Service Activities (308/2006), an accommodation pro...https://tietosuoja.fi/en/faq-personal-identity-code
-
This section provides answers to common questions.https://tietosuoja.fi/en/frequently-asked-questions
-
Know your rights The EU's General Data Protection Regulation sets down your rights when a company or organisation is processing your personal data. You have the right to obtain information on the processing of your personal data of access to your ...https://tietosuoja.fi/en/know-your-rights
-
Lawfulness, fairness and transparency The processing of personal data shall be lawful, fair and transparent. Lawfulness The processing of personal data must be done in compliance with the EU’s General Data Protection Regulation and other legislati...https://tietosuoja.fi/en/lawfulness-fairness-and-transparency
-
Frequently asked questions about the Digital Services Act (DSA) What kinds of operators are subject to the DSA's obligations? The obligations imposed by the Digital Services Act (DSA) apply to all online services, referred to as 'intermediary serv...https://tietosuoja.fi/en/digital-services-act-dsa-
-
Carrying out an impact assessment 1. Draw up a systematic description of the envisaged processing operations and the purposes of the processing Draw up a description of the nature, scope, context and purposes of the processing of personal data. Id...https://tietosuoja.fi/en/carrying-out-an-impact-assessment
-
The right to rectification Data subjects have the right to demand the rectification of inaccurate personal data concerning them and to have incomplete personal data completed. How quickly is the controller required to reply to the data subject’s r...https://tietosuoja.fi/en/right-to-rectification