DPIA
Skill packages tagged with “DPIA”
GDPR ROPA & DPIA Author
Guided elaboration of Records of Processing Activities (ROPA) and Data Protection Impact Assessments (DPIA): processing purposes, legal basis, data categories, recipients, retention, safeguards, and DPIA necessity assessment and risk mitigation.
India DPDP Act — Data Protection Impact Assessment
Draft and validate a Data Protection Impact Assessment for Significant Data Fiduciaries under India's Digital Personal Data Protection Act 2023. Covers processing inventory, consent framework, data principal rights, and cross-border transfers.
PIIA (SA) — Consultation Report
Draft the consultation report for a POPIA PIIA: document views from stakeholders or data protection experts consulted on the impact assessment.
PIIA (SA) — Mitigation Measures
Draft the mitigation measures for a POPIA PIIA: safeguards, security measures, and technical/organisational controls to address identified risks.
PIIA (SA) — Necessity and Proportionality
Draft the necessity and proportionality assessment for a POPIA PIIA: document that processing is necessary and that no less-intrusive method exists.
PIIA (SA) — Purpose of Processing
Draft the purpose of processing and lawful basis documentation for a POPIA PIIA, aligned with purpose specification and lawful processing.
PIIA (SA) — Risk Assessment
Draft the risk assessment for a POPIA PIIA: analyse risks to data subjects' rights and freedoms, including harm, discrimination, and financial loss.
PIIA (SA) — Sign-off
Draft the PIIA sign-off: final approval from the Information Officer or senior management acknowledging residual risk.
PIIA (SA) — Systematic Description of Processing
Draft the systematic description of processing for a POPIA PIIA: step-by-step description of how personal information is collected, used, stored, and deleted.
UAE Federal PDPL — Data Protection Impact Assessment
Draft and validate a DPIA under UAE Federal Decree-Law No. 45/2021 on the Protection of Personal Data (PDPL) and its Executive Regulations. Covers data inventory, lawful basis, cross-border transfers, and 72-hour breach notification.
UK GDPR & DPIA (Data Protection)
Conduct and validate Data Protection Impact Assessments (DPIAs) under the UK GDPR and ICO guidance for high-risk processing. Suggests technical and organisational safeguards aligned with UK Adequacy standards. Validates breach-notification policies against the 72-hour ICO reporting window.