July 10, 2026
Year of AI 2026 · Updated July 2026
SAUDI COMPUTE
The Kingdom's Compute Buildout, Tracked.
Sovereign AI Infrastructure · Capital Flows · Geopolitical Intelligence

RulesforAppointingPersonalDataProtectionOfficer · Table (p.9)

From RulesforAppointingPersonalDataProtectionOfficer.pdf · page 9

25 rows × 5 cols pdfs

01234
5- Following up on regulatory documents issued by the competent authority
related to the protection of personal data, including any amendments, and
inform the relevant departments to ensure compliance.
6- Providing support and advice to those responsible for developing and
operating modern technological systems to ensure compliance with the
requirements of the Law and its Implementing Regulations.
Article 9: General Provisions
1- Controllers shall periodically review DPO appointment cases to determine
whether such cases are stillrequired orlikelyto become mandatory
according to provisions hereof.
2- The Controller may appoint a DPO on a voluntary basis, even if not obligated
to do so, to assist in complying with the provisions of the Law and its
Implementing Regulations.
3- When concluding an agreement between the Controller and the Processor
for processing personal data on behalf of the Controller, the Controller shall
verify whether the Processor has a DPO. If the appointment of a DPO is
required under these rules, the Controller should request the appointment to
ensure that the necessary guarantees for implementing the provisions of the
Law and Implementing Regulations are in place.
4- The Controller must enable and support the DPO in performing their duties
and responsibilities by providing all necessary resources.
5- When appointing DPO, Controller shall not assign tasks that may conflict
with DPO tasks or affect DPO’s independence.
DocumentClassification: Public9
Source
RulesforAppointingPersonalDataProtectionOfficer.pdf
Domain
pdfs
Type
pdf
Method
camelot_stream
Dimensions
25 × 5
Page
9