Documenting a data breach
How to document a data breach in preeco | data protection – step by step according to Art. 33 GDPR: description of the incident, affected data, risk assessment and evaluation of the notification obligation to the supervisory authority.
In this tutorial you create a new incident and document it in an audit-proof manner:
1. Create a new incident via the "New" menu.
2. Describe the incident: What happened and when did it become known?
3. Record the affected processing activities, data fields and the number of affected persons.
4. Assess the risk to the rights of the affected persons.
5. preeco supports you in evaluating whether a notification to the supervisory authority is necessary.
6. With "Save" the incident is documented – the basis for deriving suitable measures from it.
Changes and errors may occur. The information in this article has been carefully compiled, but does not claim to be complete or correct.