Frequently Asked Questions
What is a risk assessment?
Companies are constantly processing data and this data is associated with a number of risks.
A risk assessment is the process of identifying, analysing, and evaluating threats and vulnerabilities in your data protection. It is the previous step that must be given to all new processing of personal data in order to establish appropriate controls and security measures.
With the risk assessment, a series of recommendations are drawn up that prevent serious damage to the fundamental rights of individuals, since they oblige companies to implement technical and organisational measures in accordance with the risks detected.
What is risk management?
These are all the actions that are going to be carried out in order to prevent any possible threat related to data processing.
What steps need to be taken to do a Risk Assessment?
First the possible risks and threats have to be identified, then the risks have to be assessed, i.e. what the impact and consequences would be if one of the previously identified risks were to occur. Finally, the risks have to be addressed, taking measures to reduce the probability of a risk occurring and to minimize the damage it may cause.
What risks can a company be exposed to when processing personal data?
To the improper use of the data, to its treatment without permission or to the elimination of data that are necessary.