Data Protection Impact Assessment
In any case of data processing with high risk, an impact analysis must be carried out: This analysis is known as data protection impact assessment (‘DPIA'). TU Delft has developed a template for this purpose. You can find the template and accompanying manual on the intranet. Below is all the information you can find with regards to a DPIA: when it should be carried out, why it should be carried out and who should carry it out within the organisation.
-
- Make sure to integrate the findings and the recommendations of the DPIA when implementation of your project;
- Include the DPIA documentation in the GDPR registry;
- If you change the processing, or there is a change of risk in your project, please check if the processing is still in accordance with the DPIA. If not, reassess your DPIA;
If you have any questions regarding DPIA, please contact the privacy representative (i.e., information managers, or data stewards) in your faculty or management. Or the privacy team via privacy-tud@tudelft.nl.