{"id":3200,"date":"2018-11-23T10:05:24","date_gmt":"2018-11-23T09:05:24","guid":{"rendered":"https:\/\/www.riscreen.de\/?p=3200"},"modified":"2018-11-23T10:05:24","modified_gmt":"2018-11-23T09:05:24","slug":"baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo","status":"publish","type":"post","link":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/","title":{"rendered":"BayLDA conducts data protection audits &#8211; Art 5 para 2 DSGVO"},"content":{"rendered":"<h2 class=\"wp-block-heading\" id=\"data-protection-audits-by-the-baylda\">Data protection audits by the BayLDA<\/h2>\n\n\n<p>Since 06.11.2018, 15 small (from 100 employees) and medium-sized (from 500 employees) companies have been audited by the BayLDA on the basis of Article 5 (2) DSGVO. Here, the so-called &#8220;accountability&#8221; is specified, which means that the company&#8217;s compliance with the legal requirements must be presented to the supervisory authority (in this case, the BayLDA) during the inspection.<\/p>\n\n\n\n<p>Also, according to the statement of the BayLDA, on-site inspections of at least 5 of the 15 SMEs are planned here. Of these 15 companies, 8 companies were selected at random; for the other 7 companies, there have been clustered data protection complaints to the BayLDA in the past.<\/p>\n\n\n\n<p>Since 01.10.2018, 3 (large) corporations in Bavaria have also been audited with the aim of determining whether compliance with the General Data Protection Regulation is anchored in the company&#8217;s day-to-day operations and whether three core processes should be effectively designed in the so-called process organization:<\/p>\n\n\n\n<ol class=\"wp-block-list\"><li>Data protection-compliant processing<\/li><li>Dealing with data subjects&#8217; rights<\/li><li>Dealing with data privacy violations<\/li><\/ol>\n\n\n\n<p>In addition, since 12.10.2018, medical practices of various medical specialties have been audited to control their handling and prevention of attacks by means of encryption Trojans and resulting ransomware. Here, the insertion of an encryption Trojan can quickly lead to a lack of access to sensitive patient and treatment data, which means that timely treatment can no longer be guaranteed.<\/p>\n\n\n\n<p>At 15 other larger companies, the processing of personal data in application procedures is currently being investigated. The focus of this investigation is the correct implementation of companies&#8217; duty to inform applicants and to educate them about how their data is handled.<\/p>\n\n\n\n<p>The BayLDA has published that a review of the following question will take place at a further 15 larger companies with many service providers in the international environment: Why was the cause of risk in the reporting of &#8220;data breaches&#8221; so far almost exclusively with the responsible company in Bavaria, but hardly with (international) service providers. On the basis of the GDPR, it is necessary that breaches of security at service providers (also in the case of further subcontracting!) also constitute a reporting obligation for the responsible parties.<\/p>\n\n\n\n<p>The BayLDA already conducted a review of patch management for content management systems for websites in the spring, with a focus on WordPress. In the process, 172 websites were checked.<\/p>\n\n\n\n<p>The questions posed by the audits and the resulting findings are helpful guidelines for preparing for possible inquiries from the supervisory authorities on the audited topics.<\/p>\n\n\n\n<p>Source BayLDA: <a href=\"https:\/\/www.lda.bayern.de\/de\/kontrollen.html\" target=\"_blank\" rel=\"noreferrer noopener\">Report of the BayLDA on data protection audits<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Data protection audits by the BayLDA Since 06.11.2018, 15 small (from 100 employees) and medium-sized (from 500 employees) companies have been audited by the BayLDA on the basis of Article 5 (2) DSGVO. Here, the so-called &#8220;accountability&#8221; is specified, which means that the company&#8217;s compliance with the legal requirements must be presented to the supervisory [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":4880,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[],"class_list":["post-3200","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-data-protection-topics"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>BayLDA conducts data protection audits - Art 5 para 2 DSGVO | Riscreen<\/title>\n<meta name=\"description\" content=\"Seit dem 06.11.2018 werden durch das BayLDA 15 kleine und mittelst\u00e4ndische Unternehmen auf Grundlage des Art. 5 Abs. 2 DSGVO gepr\u00fcft\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/\" \/>\n<meta property=\"og:locale\" content=\"en_GB\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"BayLDA conducts data protection audits - Art 5 para 2 DSGVO | Riscreen\" \/>\n<meta property=\"og:description\" content=\"Seit dem 06.11.2018 werden durch das BayLDA 15 kleine und mittelst\u00e4ndische Unternehmen auf Grundlage des Art. 5 Abs. 2 DSGVO gepr\u00fcft\" \/>\n<meta property=\"og:url\" content=\"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/\" \/>\n<meta property=\"og:site_name\" content=\"Riscreen\" \/>\n<meta property=\"article:published_time\" content=\"2018-11-23T09:05:24+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/riscreen.de\/en\/wp-content\/uploads\/sites\/2\/2018\/11\/datenschutzpruefung-466487479.webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1024\" \/>\n\t<meta property=\"og:image:height\" content=\"683\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/webp\" \/>\n<meta name=\"author\" content=\"Riscreen\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Riscreen\" \/>\n\t<meta name=\"twitter:label2\" content=\"Estimated reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/\"},\"author\":{\"name\":\"Riscreen\",\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/#\\\/schema\\\/person\\\/be91526fc8f64eff95279b8413e15c85\"},\"headline\":\"BayLDA conducts data protection audits &#8211; Art 5 para 2 DSGVO\",\"datePublished\":\"2018-11-23T09:05:24+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/\"},\"wordCount\":421,\"publisher\":{\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/riscreen.de\\\/en\\\/wp-content\\\/uploads\\\/sites\\\/2\\\/2018\\\/11\\\/datenschutzpruefung-466487479.webp\",\"articleSection\":[\"Data protection\"],\"inLanguage\":\"en-GB\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/\",\"url\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/\",\"name\":\"BayLDA conducts data protection audits - Art 5 para 2 DSGVO | Riscreen\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/riscreen.de\\\/en\\\/wp-content\\\/uploads\\\/sites\\\/2\\\/2018\\\/11\\\/datenschutzpruefung-466487479.webp\",\"datePublished\":\"2018-11-23T09:05:24+00:00\",\"description\":\"Seit dem 06.11.2018 werden durch das BayLDA 15 kleine und mittelst\u00e4ndische Unternehmen auf Grundlage des Art. 5 Abs. 2 DSGVO gepr\u00fcft\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/#breadcrumb\"},\"inLanguage\":\"en-GB\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-GB\",\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/#primaryimage\",\"url\":\"https:\\\/\\\/riscreen.de\\\/en\\\/wp-content\\\/uploads\\\/sites\\\/2\\\/2018\\\/11\\\/datenschutzpruefung-466487479.webp\",\"contentUrl\":\"https:\\\/\\\/riscreen.de\\\/en\\\/wp-content\\\/uploads\\\/sites\\\/2\\\/2018\\\/11\\\/datenschutzpruefung-466487479.webp\",\"width\":1024,\"height\":683,\"caption\":\"Datenschutzpr\u00fcfung\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/riscreen.de\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"BayLDA conducts data protection audits &#8211; Art 5 para 2 DSGVO\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/riscreen.de\\\/en\\\/\",\"name\":\"Riscreen\",\"description\":\"Compliance Consulting\",\"publisher\":{\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/riscreen.de\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-GB\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/#organization\",\"name\":\"Riscreen\",\"url\":\"https:\\\/\\\/riscreen.de\\\/en\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-GB\",\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/riscreen.de\\\/en\\\/wp-content\\\/uploads\\\/sites\\\/2\\\/2022\\\/05\\\/riscreen_logo_rgb.png\",\"contentUrl\":\"https:\\\/\\\/riscreen.de\\\/en\\\/wp-content\\\/uploads\\\/sites\\\/2\\\/2022\\\/05\\\/riscreen_logo_rgb.png\",\"width\":505,\"height\":95,\"caption\":\"Riscreen\"},\"image\":{\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/riscreen.de\\\/en\\\/#\\\/schema\\\/person\\\/be91526fc8f64eff95279b8413e15c85\",\"name\":\"Riscreen\",\"url\":\"https:\\\/\\\/riscreen.de\\\/en\\\/author\\\/en\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"BayLDA conducts data protection audits - Art 5 para 2 DSGVO | Riscreen","description":"Seit dem 06.11.2018 werden durch das BayLDA 15 kleine und mittelst\u00e4ndische Unternehmen auf Grundlage des Art. 5 Abs. 2 DSGVO gepr\u00fcft","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/","og_locale":"en_GB","og_type":"article","og_title":"BayLDA conducts data protection audits - Art 5 para 2 DSGVO | Riscreen","og_description":"Seit dem 06.11.2018 werden durch das BayLDA 15 kleine und mittelst\u00e4ndische Unternehmen auf Grundlage des Art. 5 Abs. 2 DSGVO gepr\u00fcft","og_url":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/","og_site_name":"Riscreen","article_published_time":"2018-11-23T09:05:24+00:00","og_image":[{"width":1024,"height":683,"url":"https:\/\/riscreen.de\/en\/wp-content\/uploads\/sites\/2\/2018\/11\/datenschutzpruefung-466487479.webp","type":"image\/webp"}],"author":"Riscreen","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Riscreen","Estimated reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/#article","isPartOf":{"@id":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/"},"author":{"name":"Riscreen","@id":"https:\/\/riscreen.de\/en\/#\/schema\/person\/be91526fc8f64eff95279b8413e15c85"},"headline":"BayLDA conducts data protection audits &#8211; Art 5 para 2 DSGVO","datePublished":"2018-11-23T09:05:24+00:00","mainEntityOfPage":{"@id":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/"},"wordCount":421,"publisher":{"@id":"https:\/\/riscreen.de\/en\/#organization"},"image":{"@id":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/#primaryimage"},"thumbnailUrl":"https:\/\/riscreen.de\/en\/wp-content\/uploads\/sites\/2\/2018\/11\/datenschutzpruefung-466487479.webp","articleSection":["Data protection"],"inLanguage":"en-GB"},{"@type":"WebPage","@id":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/","url":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/","name":"BayLDA conducts data protection audits - Art 5 para 2 DSGVO | Riscreen","isPartOf":{"@id":"https:\/\/riscreen.de\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/#primaryimage"},"image":{"@id":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/#primaryimage"},"thumbnailUrl":"https:\/\/riscreen.de\/en\/wp-content\/uploads\/sites\/2\/2018\/11\/datenschutzpruefung-466487479.webp","datePublished":"2018-11-23T09:05:24+00:00","description":"Seit dem 06.11.2018 werden durch das BayLDA 15 kleine und mittelst\u00e4ndische Unternehmen auf Grundlage des Art. 5 Abs. 2 DSGVO gepr\u00fcft","breadcrumb":{"@id":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/#breadcrumb"},"inLanguage":"en-GB","potentialAction":[{"@type":"ReadAction","target":["https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/"]}]},{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/#primaryimage","url":"https:\/\/riscreen.de\/en\/wp-content\/uploads\/sites\/2\/2018\/11\/datenschutzpruefung-466487479.webp","contentUrl":"https:\/\/riscreen.de\/en\/wp-content\/uploads\/sites\/2\/2018\/11\/datenschutzpruefung-466487479.webp","width":1024,"height":683,"caption":"Datenschutzpr\u00fcfung"},{"@type":"BreadcrumbList","@id":"https:\/\/riscreen.de\/en\/baylda-fuehrt-datenschutzpruefungen-durch-art-5-abs-2-dsgvo\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/riscreen.de\/en\/"},{"@type":"ListItem","position":2,"name":"BayLDA conducts data protection audits &#8211; Art 5 para 2 DSGVO"}]},{"@type":"WebSite","@id":"https:\/\/riscreen.de\/en\/#website","url":"https:\/\/riscreen.de\/en\/","name":"Riscreen","description":"Compliance Consulting","publisher":{"@id":"https:\/\/riscreen.de\/en\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/riscreen.de\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-GB"},{"@type":"Organization","@id":"https:\/\/riscreen.de\/en\/#organization","name":"Riscreen","url":"https:\/\/riscreen.de\/en\/","logo":{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/riscreen.de\/en\/#\/schema\/logo\/image\/","url":"https:\/\/riscreen.de\/en\/wp-content\/uploads\/sites\/2\/2022\/05\/riscreen_logo_rgb.png","contentUrl":"https:\/\/riscreen.de\/en\/wp-content\/uploads\/sites\/2\/2022\/05\/riscreen_logo_rgb.png","width":505,"height":95,"caption":"Riscreen"},"image":{"@id":"https:\/\/riscreen.de\/en\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/riscreen.de\/en\/#\/schema\/person\/be91526fc8f64eff95279b8413e15c85","name":"Riscreen","url":"https:\/\/riscreen.de\/en\/author\/en\/"}]}},"_links":{"self":[{"href":"https:\/\/riscreen.de\/en\/wp-json\/wp\/v2\/posts\/3200","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/riscreen.de\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/riscreen.de\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/riscreen.de\/en\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/riscreen.de\/en\/wp-json\/wp\/v2\/comments?post=3200"}],"version-history":[{"count":0,"href":"https:\/\/riscreen.de\/en\/wp-json\/wp\/v2\/posts\/3200\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/riscreen.de\/en\/wp-json\/wp\/v2\/media\/4880"}],"wp:attachment":[{"href":"https:\/\/riscreen.de\/en\/wp-json\/wp\/v2\/media?parent=3200"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/riscreen.de\/en\/wp-json\/wp\/v2\/categories?post=3200"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/riscreen.de\/en\/wp-json\/wp\/v2\/tags?post=3200"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}