A key principle of the GDPR is that you process personal data securely by means of ‘appropriate technical and organisational measures’ – this is the ‘security principle’. Doing this requires you to consider things like risk analysis, organisational policies, and physical and technical measures. You also have to take into account additional requirements about the security of your processing – and these also apply to data processors.
Human Oversight of Automated Decision-Making
		This article examines the limits and misconceptions of human oversight over automated decision‑making (ADM) systems and recommends organisational, technical and […]