The obligations regarding Phone Number Database data protection and security are also being tightened. Not only must there be appropriate security in both organizational and technical areas, the measures must also ensure Phone Number Database minimization of the processed data and the exercise of rights. For example, data should not just be Phone Number Database stored without being easily erased, something that can cause a problem, especially with backups. The measures should also ensure that only data is processed that is necessary for the specific and predefined purposes.
This is called privacy by design: the system is Phone Number Database designed to guarantee the privacy of those involved. A related concept is privacy by default:the system acts as privacy-friendly as possible, unless something special is done or the person concerned changes a setting. However, the system's default settings should be Phone Number Database set as privacy-friendly as possible. Working with third parties In practice, data Phone Number Database will often be processed by multiple parties. Usually it will be the relationship responsible – processor. Think of parties that host data or send e-mails on behalf.
Like the Wbp, the Regulation Phone Number Database stipulates that a processor agreement must then be concluded. However, the Regulation lists a number of specific points that should be included in this agreement, including: the Phone Number Database purposes of the data processing; the type of personal data being processed; the categories of data subjects to whom the data relates; appropriately securing the data; conducting audits; destroying or returning the data to the responsible person afterwards.