GDPR defines specific roles with distinct responsibilities for data protection.
Key Roles
- Data Controller — Determines purposes and means of processing
- Data Processor — Processes data on behalf of a controller
- Data Protection Officer (DPO) — Oversees compliance
- Supervisory Authority — National data protection regulator
- Data Subject — The individual whose data is processed
