Working with data processing activities
Data Processing Officers can use the options in the Data Processing Activity module to create targets, identify them as data processing activities, and perform GDPR DPIA target assessments on them to determine whether the targets are high risk.
Create a target
In GDPR, a target refers to the association between an entity and a data processing activity.
Before you begin
About this task
Procedure
Identify a target as a data processing activity
Identifying a target as a data processing activity is the first step in determining whether a data processing assessment should be performed on the target.
Before you begin
Procedure
Send a preliminary assessment for a target
You can initiate a preliminary assessment on a target to determine whether it is deemed to be a high-risk operation and to decide what mitigation procedures are needed. After the preliminary assessment is initiated, the selected assessment respondents can take the assessment.
Before you begin
Procedure
Take a preliminary assessment
When you have been identified as a respondent of a preliminary assessment, you must access and take the assessment.
Before you begin
Procedure
View all preliminary assessments
Risk executives and Data Processing Officers can view the responses from individual assessment takers.