Skip to content
AuditFront
GDPR

Controller & Processor Obligations

19 controls in this category. Click any control to see implementation guidance, evidence requirements, and common audit failures.

Art.24critical

Responsibility of the Controller

Controller & Processor Obligations
Art.25high

Data Protection by Design and by Default

Controller & Processor Obligations
Art.26high

Joint Controllers

Controller & Processor Obligations
Art.27medium

Representatives of Controllers or Processors Not Established in the Union

Controller & Processor Obligations
Art.28critical

Processor

Controller & Processor Obligations
Art.29high

Processing Under the Authority of the Controller or Processor

Controller & Processor Obligations
Art.30high

Records of Processing Activities

Controller & Processor Obligations
Art.31high

Cooperation with the Supervisory Authority

Controller & Processor Obligations
Art.32critical

Security of Processing

Controller & Processor Obligations
Art.33critical

Notification of a Personal Data Breach to the Supervisory Authority

Controller & Processor Obligations
Art.35critical

Data Protection Impact Assessment

Controller & Processor Obligations
Art.36high

Prior Consultation

Controller & Processor Obligations
Art.37high

Designation of the Data Protection Officer

Controller & Processor Obligations
Art.38high

Position of the Data Protection Officer

Controller & Processor Obligations
Art.39high

Tasks of the Data Protection Officer

Controller & Processor Obligations
Art.40low

Codes of Conduct

Controller & Processor Obligations
Art.41low

Monitoring of Approved Codes of Conduct

Controller & Processor Obligations
Art.42low

Certification

Controller & Processor Obligations
Art.43low

Certification Bodies

Controller & Processor Obligations

Assess GDPR Controller & Processor Obligations

Track every control, collect evidence, and generate audit-ready reports with AuditFront.

Start Free Assessment

Free plan · No credit card required