My municipality is considering using Trello as a tool for our leaders to better streamline their workflow. To do this, our DPO tells me we need an initial assessment of DPIA and a risk-analysis (ROS-analyse in Norwegian) to comply with the General Data Protection Regulation (GDPR).
Has anyone written a risk-analysis like this? Preferably in Norwegian, but anything will help:-)
https://trello.com/trust is probably your best bet
Thank you, these are all very useful documents, but far too general. In theory, every Norwegian municipality or company should have a finished risk-analysis on hand for all systems storing data outside of EN, to prove that the risk of not fully complying with GDPR has been assessed. I know this is probably far from the truth, but was thinking maybe someone could help;-)
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hey BA, if you find out something, we at BHL-Medical are also interested. To comply with the norms®ulations of medical devices, we basically have to validate/risk access, every piece of software. We have +- 0 experience or knowledge in those matters and we just get told that we need to do it.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.