When must a controller notify a personal-data breach to the authority?
Tocca per vedere la risposta
Risposta
Without undue delay and, where feasible, within 72 hours after becoming aware.
The 72-hour clock is a common EPSO number.
GDPR, Regulation (EU) 2016/679
Approfondimento
72-hour data breach clock: start of the countdown
Notify without undue delay and, where feasible, within 72 hours of becoming aware. The trap: 'becoming aware' means when you have reasonable certainty, not when you confirm every detail.
Utilizziamo cookie essenziali per la funzionalità del sito e cookie analitici facoltativi con il Suo consenso. Ulteriori informazioni nella nostra
Informativa sulla privacy.