ROLES AND TASKS. 1. The roles and tasks in security management processes have been defined. The individuals responsible for compliance with each respective security policy have been appointed. 2. For every resource (whether physical or electronic) that is of value for the organization, a responsible person (Resource Owner) has been appointed as being in charge of managing the security of that resource. 3. To ensure proper level of personal data protection, an independent Data Security Administrator, which, from the date the GDPR shall apply, will be replaced by Data Protection Officer, has been designated and appointed. 4. The Data Security Administrator, and subsequently the Data Protection Officer answers directly to the Company’s top management. 5. The Data Security Administrator, and subsequently the Data Protection Officer has been included in all the processes connected with personal data processing. 6. The Data Security Administrator, and subsequently the Data Protection Officer has been granted sufficient access to any and all information and documentation connected with personal data processing. 7. Those who process personal data at the request and on behalf of the Company have been specifically indicated by name as authorized to process personal data. 8. All the individuals authorized to process personal data have been included in the internal personal data security and protection training scheme. 9. All the individuals authorized to process personal data have been obliged to respect data confidentiality throughout the term of employment and thereafter.
Appears in 6 contracts
Sources: Data Processing Agreement, Data Processing Agreement, Data Processing Agreement