Print

Accountability

Accountability is a common principle for organisations across many disciplines; the principle embodies that organisations live up to expectations for instance in the delivery of their products and their behaviour towards those they interact with. The General Data Protection Regulation (GDPR) integrates accountability as a principle which requires that organisations put in place appropriate technical and organisational measures and be able to demonstrate what they did and its effectiveness when requested.

Organisations, and not Data Protection Authorities, must demonstrate that they are compliant with the law.  Such measures include: adequate documentation on what personal data are processed, how, to what purpose, how long;  documented processes and procedures aiming at tackling data protection issues at an early state when building information systems or responding to a data breach; the presence of a Data Protection Officer that be integrated in the organisation planning and operations etc.

In 2015, in anticipation of the GDPR, the EDPS initiated a project to develop a framework for greater accountability in data processing to be applied to our own organisation, as an institution, a manager of financial resources and people - and a controller.

In addition, we have started to promote the accountability principle through visits to small, medium and large EU bodies to explain the new obligations resulting from the revised legal framework and the implications for EU institutions and the EDPS' work as their supervisory authority.

Filters

18
Nov
2025

EDPS Formal Comments on the Draft Commission Implementing Regulation laying down implementing technical standards for Regulation (EU) 2023/2631 on standard forms, templates and procedures for notifying material changes in information for External Reviewer

EDPS Formal comments on the draft Commission Implementing Regulation laying down implementing technical standards for the application of Regulation (EU) 2023/2631 with regard to the standard forms, templates and procedures for the notification of material changes in the information provided for registration as an external reviewer

Available languages: English
17
Nov
2025

EDPS Formal comments on the draft Commission Implementing Regulation on the application of the principles for verification of declared embedded emissions pursuant to Regulation (EU) 2023/956

EDPS Formal comments on the draft Commission Implementing Regulation on the application of the principles for verification of declared embedded emissions pursuant to Regulation (EU) 2023/956

Available languages: English
13
Nov
2025

EDPS Formal comments on the draft Commission Delegated Regulation supplementing Regulation (EU) 2023/956 on conditions for granting, controlling, and withdrawing verifier accreditation, and on mutual recognition and peer evaluation of accreditation bodies

EDPS Formal comments on the draft Commission Delegated Regulation supplementing Regulation (EU) 2023/956 by specifying the conditions for granting accreditation to verifiers, for the control and oversight of accredited verifiers, for the withdrawal of accreditation and for mutual recognition and peer evaluation of accreditation bodies

 

 

Available languages: English
1
Aug
2024

Supervisory Opinion on retention periods of personal data regarding Marie Sklodowska-Curie actions candidates and funded researches

EDPS Supervisory Opinion on retention periods of personal data regarding Marie Sklodowska-Curie actions candidates and funded researches. 

Available languages: English