Browse Definitions :
Definition

data protection officer (DPO)

Contributor(s): Matthew Haughn

A data protection officer (DPO) is an enterprise security position tasked with ensuring that data management and handling are compliant with the European Union’s General Data Protection Regulations (GDPR).

A DPO is tasked with enforcing the regulations of the GDPR and is also responsible for the general strategy for the protection of data. In cases where a data subject must be contacted by law, a DPO would make the contact.

The GDPR necessitates a DPO for the oversight of any company handling large amounts of EU citizens' private data. The GDPR does not mandate any specific certifications for DPOs but does require that they are experts in data protection practice and law. DPOs are required to be experts in data processing and knowledgeable about the protection required for the type of data handled. A DPO can come from a company’s existing staff, and a single officer may work for a company’s related institutions as well.

The responsibilities of a DPO include:

  • Training management and staff (including possible outsourced data entry staff) on data protection regulation requirements.
  • Assessing compliance requirements adherence and addressing infractions.
  • Serving as a contact to GDPR supervisors.
  • Tracking performance and advising on likely results of data protection measures.
  • Maintaining records of data protection efforts and the reasons they were implemented, in case of public request.
  • Informing data subjects about how their data is being used, protection measures safeguarding their data and their right to be forgotten.

Although the United Kingdom is set to leave the EU in March 2019, GDPR requirements will have to be followed when dealing with EU citizens' data. Companies will be required hire a DPO before the GDPR is effective in May 2018. Hiring sooner is advisable to get the most qualified individuals, as demand will increase as the deadline looms nearer.

This was last updated in October 2017

Continue Reading About data protection officer (DPO)

Start the conversation

Send me notifications when other members comment.

Please create a username to comment.

-ADS BY GOOGLE

File Extensions and File Formats

SearchCompliance

  • PCI DSS (Payment Card Industry Data Security Standard)

    The Payment Card Industry Data Security Standard (PCI DSS) is a widely accepted set of policies and procedures intended to ...

  • risk management

    Risk management is the process of identifying, assessing and controlling threats to an organization's capital and earnings.

  • compliance framework

    A compliance framework is a structured set of guidelines that details an organization's processes for maintaining accordance with...

SearchSecurity

  • Trojan horse (computing)

    In computing, a Trojan horse is a program downloaded and installed on a computer that appears harmless, but is, in fact, ...

  • identity theft

    Identity theft, also known as identity fraud, is a crime in which an imposter obtains key pieces of personally identifiable ...

  • DNS over HTTPS (DoH)

    DNS over HTTPS (DoH) is a relatively new protocol that encrypts domain name system traffic by passing DNS queries through a ...

SearchHealthIT

  • telemedicine (telehealth)

    Telemedicine is the remote delivery of healthcare services, such as health assessments or consultations, over the ...

  • Project Nightingale

    Project Nightingale is a controversial partnership between Google and Ascension, the second largest health system in the United ...

  • medical practice management (MPM) software

    Medical practice management (MPM) software is a collection of computerized services used by healthcare professionals and ...

SearchDisasterRecovery

SearchStorage

  • M.2 SSD

    An M.2 SSD is a solid-state drive (SSD) that conforms to a computer industry specification and is used in internally mounted ...

  • kilobyte (KB or Kbyte)

    A kilobyte (KB or Kbyte) is a unit of measurement for computer memory or data storage used by mathematics and computer science ...

  • virtual memory

    Virtual memory is a memory management capability of an operating system (OS) that uses hardware and software to allow a computer ...

Close