9. Data Breach Protocol
This Protocol is to assist your firm in handling data breaches.
As all data breaches are different, consideration will need to be given to particular scenario and the appropriate response. For the most up-to-date external guidance, please see:
European Data Protection Board
- Guidelines 9/2022 on personal data breach notification under GDPR | European Data Protection Board
- Guidelines 01/2021 on Examples regarding Personal Data Breach Notification | European Data Protection Board
Data Protection Commission
Right column
GDPR Guidance
Browse other Law Society guidance on the General Data Protection Regulation (GDPR) through the links below.
- 1. Understanding obligations
- 2. Being accountable
- 3. Communicating with staff and service users
- 4. Data subject rights
- 5. Data Subject Access Requests (DSARs)
- 6. Lawful basis for processing personal data
- 7. Consent
- 8. Processing Children's Data
- 9. Data Breach Protocol
- 10. Data Protection Impact Assessment
- 11. Data Protection Officer
- Considering appointing a DPO - issues to consider