RulesforAppointingPersonalDataProtectionOfficer · Table (p.9)
From RulesforAppointingPersonalDataProtectionOfficer.pdf · page 9
| 0 | 1 | 2 | 3 | 4 |
|---|---|---|---|---|
| 5- Following up on regulatory documents issued by the competent authority | ||||
| related to the protection of personal data, including any amendments, and | ||||
| inform the relevant departments to ensure compliance. | ||||
| 6- Providing support and advice to those responsible for developing and | ||||
| operating modern technological systems to ensure compliance with the | ||||
| requirements of the Law and its Implementing Regulations. | ||||
| Article 9: General Provisions | ||||
| 1- Controllers shall periodically review DPO appointment cases to determine | ||||
| whether such cases are still | required or | likely | to become mandatory | |
| according to provisions hereof. | ||||
| 2- The Controller may appoint a DPO on a voluntary basis, even if not obligated | ||||
| to do so, to assist in complying with the provisions of the Law and its | ||||
| Implementing Regulations. | ||||
| 3- When concluding an agreement between the Controller and the Processor | ||||
| for processing personal data on behalf of the Controller, the Controller shall | ||||
| verify whether the Processor has a DPO. If the appointment of a DPO is | ||||
| required under these rules, the Controller should request the appointment to | ||||
| ensure that the necessary guarantees for implementing the provisions of the | ||||
| Law and Implementing Regulations are in place. | ||||
| 4- The Controller must enable and support the DPO in performing their duties | ||||
| and responsibilities by providing all necessary resources. | ||||
| 5- When appointing DPO, Controller shall not assign tasks that may conflict | ||||
| with DPO tasks or affect DPO’s independence. | ||||
| Document | Classification: Public | 9 |
Source Metadata