Meccanismi di certificazione, sigilli e marchi di protezione dei dati

La certificazione è uno strumento volontario che aiuta le organizzazioni ad attuare e dimostrare la conformità al RGPD.
Il registro fornisce una panoramica dei meccanismi di certificazione esistenti e dei sigilli e marchi di protezione dei dati, rilasciati dalle autorità competenti per la protezione dei dati a seguito di un parere dell’EDPB (articolo 42, paragrafo 5, e articolo 42, paragrafo 8, RGPD), anche quando si tratta di un sigillo europeo per la protezione dei dati.
Elenca inoltre i requisiti approvati per l’accreditamento degli organismi di certificazione (articolo 43, paragrafo 3, RGPD).

  • 15 elementi
Filter on
Filter on comptent SA
Filter on type
Filter on scheme owner
Filter on type of criteria

Trusted Site Data Privacy Criteria Catalogue for Inspecting the Conformity of an IT Solution with the European General Data Protection Regulation

de/ldi nrw
Scheme owner
TÜV NORD CERT GmbH
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers and processors

Certification as tool for transfers
Non pubblicato
List of documents assessed by the EDPB
  • Trusted Site Data Privacy Criteria Catalogue for Inspecting the Conformity of an IT Solution with the European General Data Protection Regulation Version 2.12 from 19.03.2025
Date of national decision
Relevant topics

Lexing GDPR certification

Scheme owner
Lexing
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers

Certification as tool for transfers
Non pubblicato
List of documents assessed by the EDPB
  1. Lexing GDPR certification criteria V.4.1.pdf
  2. Annex 5 Concordance table between GDPR articles and Lexing certification criteria V02.1.pdf

BDO Austria GmbH Certification Criteria

Scheme owner
BDO Austria GmbH
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers and processors

Certification as tool for transfers
Non pubblicato
List of documents assessed by the EDPB
  1. Certification Criteria_BDO Consulting GmbH_V3.8_EN
  2. BDO Application Form and ToE - Version 1.2 EN

BC 5701:2024

Scheme owner
Brand Compliance B.V.
Scope

Generic

Type of criteria
EU Data Protection Seal
Applicability of the scheme

Data controllers and processors

Certification as tool for transfers
Non pubblicato
List of documents assessed by the EDPB
  • GDPR Certification Standard and Criteria, BC 5701:2024, Version 0.7

DSGVO-information privacy standard

de/hb
Scheme owner
Datenschutz cert GmbH
Scope

IT-supported processing operations

Type of criteria
National certification criteria
Applicability of the scheme

Data controllers and processors in Germany

Certification as tool for transfers
Non pubblicato
List of documents assessed by the EDPB
  • Catalogue of Criteria for the Certification of IT-supported Processing of Personal Data pursuant to Art. 42 GDPR (‘GDPR – information privacy standard’), Version 0.9.7

DSGVO-zt GmbH Certification criteria

Scheme owner
DSGVO-zt GmbH
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers

Certification as tool for transfers
Non pubblicato
List of documents assessed by the EDPB
  • Certification criteria Basic module, Version 1.5
  • Annex I to the General Certification Criteria concerning the TOMs – Technical and Organisational Measures, Version 1.3 
  • Attachment to Annex I to the General Certification Criteria concerning the TOMs – Technical and Organisational Measures Certification requirements, Version 1.3

EuroPriSe European Privacy Seal

de/ldi nrw
Scheme owner
EuroPriSe Cert GmbH
Scope

Certification of processing operations by processors in accordance with the GDPR using the EuroPriSe method

Type of criteria
EU Data Protection Seal
Applicability of the scheme

Data Processors

Certification as tool for transfers
Non pubblicato
List of documents assessed by the EDPB
  • Krit_Katalog_Verarbeitungsvorgange von AV_EU_EN_v1_5

AUDITOR conformity assessment

de/ldi nrw
Scheme owner
Competence Centre Trusted Cloud e.V.
Scope

Certification of data processing operations conducted by a cloud service provider as processor pursuant to Article 28 GDPR, as well as limited processing operations conducted by a cloud service provider as controller

Type of criteria
National certification criteria
Applicability of the scheme

Data Processors

Certification as tool for transfers
Non pubblicato
List of documents assessed by the EDPB
  • 01_AUDITOR ACC v_0.99_f_03.02.24_clean.docx
  • 04_Certification Object_v0.99_c.docx

BC5701:2023

Scheme owner
Brand Compliance B.V.
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers and processors within the Netherlands

Certification as tool for transfers
Non pubblicato
List of documents assessed by the EDPB

Certification standard BC 5701:2022 versie 1.2

 

GDPR-CARPA

lu
Scheme owner
LU SA
Scope

Any type of processing except:

personal data processing operations specifically targeting minors under 16 years old,
processing operations in the context of a joint controllership,
processing operations in the context of article 10 GDPR, except those that are clearly defined and regulated by Luxembourgish or European Laws and for which the CNPD is the competent supervisory authority (e.g. Loi du 1er août 2018 relative à la protection des personnes physiques à l’égard du traitement des données à caractère personnel en matière pénale ainsi qu’en matière de sécurité nationale),
processing operations of entities that have not officially designated a DPO* (article 37 GDPR). 

Type of criteria
National certification criteria
Applicability of the scheme

controllers and processors established in Luxembourg

Certification as tool for transfers
Non pubblicato
List of documents assessed by the EDPB
  • LU SA – GDPR-CARPA Certification criteria-1.docx