Twitter fined – the 72h notification period for data protection violations under Art. 33 GDPR knows no holidays (Part 1 of 3)

Data Protection
21.12.2020

Part 1 – Obligation to notify data protection breaches by the controller to the supervisory authority pursuant to Art. 33 (1)

Obligation of the controller to notify the supervisory authority, Art. 33 (1) GDPR

1. Breach of data protection

2. Risk

3. Responsible supervisory authority

4. 72h notification deadline

5. Content and form of the notification

6. Documentation requirements

7. Sanctions

Part 2 continues with the notification obligation of the processor according to Art. 33 (2) of the GDPR. This is also important for you as a controller if you use processors.