Certifieringsmekanismer samt sigill och märkningar för dataskydd

Certifiering är ett valfritt verktyg som organisationer kan använda för att säkerställa och påvisa efterlevnad av den allmänna dataskyddsförordningen.
Detta register ger en översikt över befintliga certifieringsmekanismer och sigill/märkningar för dataskydd som utfärdats av behöriga dataskyddsmyndigheter efter ett yttrande från EDPB (artikel 42.5 och 42.8 i den allmänna dataskyddsförordningen), även när detta motsvarar ett europeiskt sigill för dataskydd.
Där anges även de godkända kraven för ackreditering av certifieringsorgan (artikel 43.3 i den allmänna dataskyddsförordningen).

  • 17 poster
Filter on
Filter on comptent SA
Filter on type
Filter on scheme owner
Filter on type of criteria
Filter on certification as tool for transfers

BC5701:2023

nl
Scheme owner
Brand Compliance B.V.
Scope

Generic

Type of criteria
National certification criteria
Applicability of the scheme

Controllers and processors within the Netherlands

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB

Certification standard BC 5701:2022 versie 1.2

 

EuroPriSe

DE/LDI NRW
Scheme owner
EuroPriSe Cert GmbH
Scope

Certification of processing operations by processors in accordance with the GDPR using the EuroPriSe method

Type of criteria
National certification criteria
Applicability of the scheme

Data Processors

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  • EuroPriSe_criteria catalogue_Processors_EN_v2_1

GDPR-CARPA

Scheme owner
LU SA
Scope

Any type of processing except:

personal data processing operations specifically targeting minors under 16 years old,
processing operations in the context of a joint controllership,
processing operations in the context of article 10 GDPR, except those that are clearly defined and regulated by Luxembourgish or European Laws and for which the CNPD is the competent supervisory authority (e.g. Loi du 1er août 2018 relative à la protection des personnes physiques à l’égard du traitement des données à caractère personnel en matière pénale ainsi qu’en matière de sécurité nationale),
processing operations of entities that have not officially designated a DPO* (article 37 GDPR). 

Type of criteria
National certification criteria
Applicability of the scheme

controllers and processors established in Luxembourg

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  • LU SA – GDPR-CARPA Certification criteria-1.docx 

 

Europrivacy

Scheme owner
European Centre for Certification and Privacy (ECCP)
Scope

Any type of processing except of genetic data

Type of criteria
EU Data Protection Seal
Applicability of the scheme

Controllers and processors within EEA

Certification as tool for transfers
Ej publicerad
List of documents assessed by the EDPB
  1. EP-C.A - Application and Target of Evaluation v60
  2. EP-C.G - Europrivacy GDPR Core Criteria v60
  3. EP-C.T - Technical and Organisational Measures v60
  4. EP-C.C - Complementary Contextual Checks and Controls v60

Decision of the EL SA regarding the approval of the requirements for accreditation of a certification body pursuant to Article 43(3) GDPR

gr

Germany SAs' requirements for accreditation of a certification body pursuant to Article 43(3) GDPR