The GDPR code of conduct for CSPs
Cloud service providers and processors are required by GDPR to adopt approved codes of conduct or take part in certification or seal programs that have been authorized by supervisory authorities, in order to demonstrate compliance with GDPR standards. This assists in demonstrating conformity with the regulation, offering guarantees and assurances of cross-border transfer safeguards. The creation of codes of conduct that support the correct implementation of GDPR is encouraged under Article 40. The rule makes it clear that the proposed code of conduct must include particular elements related to how GDPR must be applied. The following ought to be mentioned:
- Fair and transparent processing – controllers’ legitimate interests
- Gathering of personal information
- Anonymization of personal information
- Data made available to the general public and data subjects
- Exercising data subjects’ rights
- Information given...