{"id":367,"date":"2019-08-21T14:07:12","date_gmt":"2019-08-21T14:07:12","guid":{"rendered":"http:\/\/www.dataprotectionconsultant.it\/EN\/?p=367"},"modified":"2020-05-25T07:52:52","modified_gmt":"2020-05-25T07:52:52","slug":"faq-accountability-governance","status":"publish","type":"post","link":"https:\/\/www.dataprotectionconsultant.it\/EN\/faq-accountability-governance\/","title":{"rendered":"Faq &#8211; Accountability &#038; Governance"},"content":{"rendered":"<p><a href=\"http:\/\/www.dataprotectionconsultant.it\/faq-accountability-governance\/\"><img decoding=\"async\" loading=\"lazy\" class=\"alignright wp-image-43\" src=\"http:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/flag-italia-trasparente.jpg\" alt=\"\" width=\"50\" height=\"50\" srcset=\"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/flag-italia-trasparente.jpg 225w, https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/flag-italia-trasparente-100x100.jpg 100w, https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/flag-italia-trasparente-150x150.jpg 150w\" sizes=\"(max-width: 50px) 100vw, 50px\" \/><\/a> <a href=\"http:\/\/www.dataprotectionconsultant.it\/EN\/faq-accountability-governance\/\"><img decoding=\"async\" loading=\"lazy\" class=\"alignright wp-image-44\" src=\"http:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/flag-uk-trasparente.png\" alt=\"\" width=\"50\" height=\"50\" srcset=\"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/flag-uk-trasparente.png 225w, https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/flag-uk-trasparente-100x100.png 100w, https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/flag-uk-trasparente-150x150.png 150w\" sizes=\"(max-width: 50px) 100vw, 50px\" \/><\/a><\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" loading=\"lazy\" class=\"aligncenter wp-image-49 size-medium\" src=\"http:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faq-300x136.jpg\" alt=\"\" width=\"300\" height=\"136\" srcset=\"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faq-300x136.jpg 300w, https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faq-600x272.jpg 600w, https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faq.jpg 617w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><\/p>\n<p style=\"text-align: center;\"><span style=\"font-size: 18pt; color: #ff0000;\"><strong>Accountability &amp; Governance<\/strong><\/span><\/p>\n<p style=\"text-align: center;\"><img decoding=\"async\" loading=\"lazy\" class=\"aligncenter wp-image-370\" src=\"http:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faccina-dubbiosa-2.jpg\" alt=\"\" width=\"50\" height=\"50\" srcset=\"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faccina-dubbiosa-2.jpg 150w, https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faccina-dubbiosa-2-100x100.jpg 100w\" sizes=\"(max-width: 50px) 100vw, 50px\" \/><span style=\"color: #ff0000; font-size: 14pt;\"><strong>How can accountability be demonstrated?<\/strong><\/span><\/p>\n<p style=\"text-align: justify;\"><span style=\"color: #000000;\"><strong>Accountability can be demonstrated by applying appropriate documented internal procedures which determine how it has been decided to comply with the obligations set out in the GDPR. All obligations imply drawing up written documents which may be useful to demonstrate compliance with the GDPR to the supervisory authority. Some procedures and written documents, instead, are to be made available to the supervisory authority on request or if this is required by the GDPR.<\/strong><\/span><img decoding=\"async\" loading=\"lazy\" class=\"aligncenter wp-image-45\" src=\"http:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faccina-ok-trasparente.jpg\" alt=\"\" width=\"60\" height=\"50\" \/><\/p>\n<hr \/>\n<p style=\"text-align: center;\"><img decoding=\"async\" loading=\"lazy\" class=\"aligncenter wp-image-370\" src=\"http:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faccina-dubbiosa-2.jpg\" alt=\"\" width=\"50\" height=\"50\" srcset=\"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faccina-dubbiosa-2.jpg 150w, https:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faccina-dubbiosa-2-100x100.jpg 100w\" sizes=\"(max-width: 50px) 100vw, 50px\" \/><span style=\"color: #ff0000; font-size: 14pt;\"><strong>How to organise governance?<\/strong><\/span><\/p>\n<p style=\"text-align: justify;\"><span style=\"color: #000000;\"><strong>A systematic and regular monitoring activity of the procedures may be applied through:<\/strong><\/span><\/p>\n<p style=\"text-align: justify; padding-left: 40px;\"><span style=\"color: #000000;\"><strong>1. organisation of a team, meeting at regular intervals, in order to discuss the level of implementation of the internal procedures and raise doubts and gaps<\/strong><\/span><\/p>\n<p style=\"text-align: justify; padding-left: 40px;\"><span style=\"color: #000000;\"><strong>2. written documentation of the results of the team\u2019s meetings <\/strong><\/span><\/p>\n<p style=\"text-align: justify; padding-left: 40px;\"><span style=\"color: #000000;\"><strong>3. where appropriate or if there are particular gaps, seek the opinion and recommendations of the DPO (if appointed) on adjustments of the internal procedures, also in the event of legislative amendments<\/strong><\/span><\/p>\n<p style=\"padding-left: 40px; text-align: justify;\"><span style=\"color: #000000;\"><strong>4. reporting to the highest management level \u2013 if not attending the meetings \u2013 the necessary adjustments to improve the internal procedures.<\/strong><\/span><span style=\"font-family: 'Comic Sans MS', sans-serif; color: #0000ff;\"><strong><img decoding=\"async\" loading=\"lazy\" class=\"aligncenter wp-image-45\" src=\"http:\/\/www.dataprotectionconsultant.it\/EN\/wp-content\/uploads\/2019\/08\/faccina-ok-trasparente.jpg\" alt=\"\" width=\"60\" height=\"50\" \/><\/strong><\/span><\/p>\n<hr \/>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #000000;\"><strong>To learn more, click <span style=\"text-decoration: underline; color: #0000ff;\"><a style=\"color: #0000ff; text-decoration: underline;\" href=\"http:\/\/www.dataprotectionconsultant.it\/EN\/accountability-governance\/\">here<\/a><\/span> or <a style=\"color: #000000;\" href=\"http:\/\/www.dataprotectionconsultant.it\/EN\/contacts\/\"><span style=\"text-decoration: underline;\"><span style=\"color: #0000ff; text-decoration: underline;\">contact me<\/span><\/span><\/a>.<\/strong><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&nbsp; &nbsp; Accountability &amp; Governance How can accountability be demonstrated? Accountability can be demonstrated by applying appropriate documented internal procedures which determine how it has been decided to comply with the obligations set out in the GDPR. All obligations imply drawing up written documents which may be useful to demonstrate compliance with the GDPR to &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/www.dataprotectionconsultant.it\/EN\/faq-accountability-governance\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Faq &#8211; Accountability &#038; Governance&#8221;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-json\/wp\/v2\/posts\/367"}],"collection":[{"href":"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-json\/wp\/v2\/comments?post=367"}],"version-history":[{"count":13,"href":"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-json\/wp\/v2\/posts\/367\/revisions"}],"predecessor-version":[{"id":372,"href":"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-json\/wp\/v2\/posts\/367\/revisions\/372"}],"wp:attachment":[{"href":"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-json\/wp\/v2\/media?parent=367"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-json\/wp\/v2\/categories?post=367"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.dataprotectionconsultant.it\/EN\/wp-json\/wp\/v2\/tags?post=367"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}