Monitor Prawniczy

no. 20/2016

Data protection by design and data protection by default in the General Data Protection Regulation

Michał Bienias
Aplikant radcowski w Okręgowej Izbie Radców Prawnych w Warszawie. Prawnik w Kancelarii Prawnej Traple, Konarski, Podrecki i Wspólnicy sp. j. Absolwent studiów podyplomowych Zarządzania Bezpieczeństwem Informacji w Szkole Głównej Handlowej.
Abstract

Regulation 2016/679 regulated the principles of data protection by design and data protection by default. Those principles had been earlier shaped in the positions of the regulators. As a matter of fact, the duty to protect data by design is the requirement to implement adequate technical and organizational measures at the time when data processing methods are specified, that is before data is collected. Nevertheless, data protection by design and data protection by default include also a whole set of other provisions aimed at ensuring preventive and proactive data protection.