Sök

Din sökning på 'Information' gav 409 resultat
Fess-sök
  1. List compiled by the Office of the Data Protection Ombudsman of processing operations which require data protection impact assessment (DPIA) Updated 21.12.2018 Article 35 (1) GDPR requires a DPIA when the processing activity is likely to result in...
    https://tietosuoja.fi/en/list-of-processing-operations-which-require-dpia
  2. 1.6.2023 | Biträdande dataombudsmannen har gjort en rättelse i beslutet från den 27 april där Meteorologiska institutet konstaterades att olagligen ha överfört personuppgifter till USA genom Googles tjänster. Anmärkningen till Meteorologiska institutet om att ha brutit mot artikel 35 i den allmänna dataskyddsförordningen om konsekvensbedömning har raderats från beslutet. I det korrigerade beslutet bedöms inte efterlevnaden av artikel 35 i den allmänna dataskyddsförordningen.
    https://tietosuoja.fi/sv/-/rattelse-till-beslutet-om-meteorologiska-institutet-anmarkningen-om-underlatelse-att-genomfora-en-konsekvensbedomning-raderades
  3. 20.7.2026 | EU-maiden tietosuojaviranomaiset kokoontuivat 16.–17. heinäkuuta Dublinissa Euroopan tietosuojaneuvoston korkean tason tapaamisessa. Tietosuojaviranomaiset kehottavat luomaan oikeusperustan tiedonvaihdolle eri alojen viranomaisten kesken. Tietosuojaneuvosto keskusteli myös siitä, kuinka tietosuojasääntelyn yhdenmukaista soveltamista voitaisiin tukea tietosuojaviranomaisten entistä tiiviimmällä yhteistyöllä.
    https://tietosuoja.fi/-/euroopan-tietosuojaneuvosto-keskusteli-eri-alojen-viranomaisten-valisesta-tiedonjaosta-ja-valvonnan-tehostamisesta
  4. Processing involving several EU countries If your organisation operates in more than one EU country, you need to find out which country’s supervisory authority you are meant to deal with. This data protection authority is called the lead superviso...
    https://tietosuoja.fi/en/processing-involving-several-eu-countries
  5. 29.9.2023 | Europeiska dataskyddsstyrelsen och Europeiska datatillsynsmannen har gett ett gemensamt yttrande om EU-kommissionens förslag till en förordning om harmonisering av förvaltningsförfarandet vid behandling av ärenden som överskrider EU-ländernas gränser. Syftet med den nya förordningen är att effektivera samarbetet mellan de europeiska dataskyddsmyndigheterna vid ärenden som gäller människor i flera EU-länder.
    https://tietosuoja.fi/sv/-/europeiska-dataskyddsstyrelsen-och-europeiska-datatillsynsmannen-hoppas-pa-snabbt-godkannande-av-forslaget-till-en-forordning-som-gor-behandlingen-av-gransoverskridande-arenden-smidigare
  6. Transfers of personal data out of the European Economic Area Transferring personal data out of the EEA requires an appropriate basis for the transfer and compliance with the other requirements imposed by data protection legislation. This page desc...
    https://tietosuoja.fi/en/transfers-of-personal-data-out-of-the-eea
  7. Risk assessment and data protection planning Controllers have a responsibility to assess the risks relating to the processing of personal data every time they are about to process personal data. A risk assessment allows controllers to plan the ste...
    https://tietosuoja.fi/en/risk-assessment-and-data-protection-planning
  8. Office of the Data Protection Ombudsman The Office of the Data Protection Ombudsman safeguards your data protection rights The Data Protection Ombudsman is a national supervisory authority which supervises the compliance with data protection legis...
    https://tietosuoja.fi/en/office-of-the-data-protection-ombudsman
  9. Binding corporate rules Binding Corporate Rules (BCR) refer to common binding rules on the transfer of personal data to third countries within companies in the same group of undertakings or group of enterprises engaged in a joint economic activity...
    https://tietosuoja.fi/en/binding-corporate-rules
  10. 24.5.2023 | Den irländska dataskyddsmyndigheten har påfört Meta Platforms Ireland Limited en administrativ påföljdsavgift på 1,2 miljarder euro för överföring av personuppgifter till USA via Facebook i strid med lagen. Påföljdsavgiften påfördes enligt Europeiska dataskyddsstyrelsens bindande tvistlösningsbeslut. Detta är den hittills största boten som påförts på basis av dataskyddsförordningen. Dessutom åla...
    https://tietosuoja.fi/sv/-/meta-far-en-pafoljdsavgift-pa-1-2-miljarder-euro-genom-europeiska-dataskyddsstyrelsens-beslut-for-overforing-av-personuppgifter-till-usa-i-strid-med-lagen
  11. Codes of Conduct Codes of conduct are sector-specific guidelines on the application of data protection legislation. They are intended to help organisations comply with data protection requirements with concrete and practical instructions. By commi...
    https://tietosuoja.fi/en/codes-of-conduct
  12. Storage limitation Personal data may only be stored for as long as necessary for the purposes of processing. The controller must plan and be able to justify the storage time of the personal data. The storage times of personal data must also be doc...
    https://tietosuoja.fi/en/storage-limitation
  13. 17.10.2025 | OEV-HPY/88/2025 25.8.2025 Beslut om avgister för handlingar som tas ut vid ämbetsverket Specialmyndighet- erna inom jus riets avgistsförordning 1. Avgister som tas ut med stöd av offentlighetslagen I lagen om offentlighet i myndigheternas verksamh...
    https://tietosuoja.fi/documents/6927448/8486189/Beslut_om_avgi%EF%AC%85er_f%C3%B6r_handlingar_2025.pdf/91401f43-c650-b056-5fb7-6333d04d0b3d/Beslut_om_avgi%EF%AC%85er_f%C3%B6r_handlingar_2025.pdf?t=1760683648023
  14. Minimisation of data Personal data may only be processed when necessary for the purposes of the processing. The personal data being processed must be appropriate , i.e. data that can be used to fulfil a specified purpose of processing relevant , i...
    https://tietosuoja.fi/en/minimisation-of-data
  15. Declaration of Data Protection Officer Purpose of processing The purpose of processing the personal data of Data Protection Officers is to enable communication between the supervisory authority and the Data Protection Officers of controllers and p...
    https://tietosuoja.fi/en/declaration-of-data-protection-officer
  16. 17.10.2025 | OEV-HPY/88/2025 25.8.2025 Beslut om avgister för handlingar som tas ut vid ämbetsverket Specialmyndighet- erna inom jus riets avgistsförordning 1. Avgister som tas ut med stöd av offentlighetslagen I lagen om offentlighet i myndigheternas verksamh...
    https://tietosuoja.fi/documents/6927448/8486189/Beslut_om_avgi%EF%AC%85er_f%C3%B6r_handlingar_2025.pdf/91401f43-c650-b056-5fb7-6333d04d0b3d?t=1760683648023
  17. 7.3.2025 | Dataombudsmannens byrå, PB 800, 00531 Helsingfors, telefonväxel: 029 566 6700, [email protected], tietosuoja.fi 6.3.2025 Lathund om dataskydd i valkampanjer Dataombudsmannens byrå har utarbetat en lathund för partier, kandidater och deras stödtrupp...
    https://tietosuoja.fi/documents/6927448/8214540/Lathund%20om%20dataskydd%20i%20valkampanjer%202025.pdf/9a75815d-9535-3fbc-2c8c-16c0b26c7ceb?t=1741333198171
  18. 22.5.2023 | Biträdande dataombudsmannen har gett Meteorologiska institutet en anmärkning på grund av överföring utan giltig orsak av personuppgifter till USA genom övervakningsteknologier. Dessutom hade Meteorologiska institutet underlåtit att göra en konsekvensbedömning för dataskydd av internationella dataöverföringar.
    https://tietosuoja.fi/sv/-/anmarkning-till-meteorologiska-institutet-for-overforing-av-personuppgifter-till-det-amerikanska-foretaget-google
  19. Accountability in scientific research The controller must be prepared to demonstrate that data protection regulations have been taken into account in the study. Researchers must document the implementation of data-protection principles and other p...
    https://tietosuoja.fi/en/accountability-in-scientific-research
  20. Data breach notification Purpose of processing If a personal data breach can cause a risk to the rights and freedoms of natural persons, the supervisory authority must be notified. In Finland, the Office of the Data Protection Ombudsman functions ...
    https://tietosuoja.fi/en/data-breach-notification