Transcription of Kenya Data Protection Act - A Quick Guide 2021
{{id}} {{{paragraph}}}
2021 Kenya data Protection ActQuick GuideKenya DataProtection Act 2021 Deloitte & , ,followsthepathtakenbytheEuropeanUnionin enactingtheGeneralDataProtectionRegulati on(GDPR) ,withthoseopposedtotheprocessraisingconc ernaboutthesafetyofcitizen : giveeffecttoArticle31(c)and(d)oftheConst itutionthatcontaintherighttoprivacy; establishmentoftheOfficeoftheDataCommiss ioner; regulatetheprocessingofpersonaldata, providefortherightsofdata subjects ;and obligationsofdata controllers (Personwhodeterminesthepurposeandmeansof processingofpersonaldata)and processors (Personwhoprocessespersonaldataonbehalfo fthedatacontroller).DataProtectionPrinci plesTheActrequiresDataControllersandProc essorstoprocessdatalawfully;minimisecoll ectionofdata;restrictsfurtherprocessingo fdata;requiresdatacontrollersandprocesso rstoensuredataquality; ,oncetheofficeoftheDataCommissionerisest ablished,organisationsmeetingthedefiniti onofacontrollerorprocessorwillneedtoregi sterassuch, Everydatacontrollerordataprocessorisrequ iredtoensurethestorage,onaserverordatace ntrelocatedinKenya,ofatleastoneservingco pyofpersonaldatatowhichtheActapplies.
The Data Protection Act impacts many areas of an organisation, mainly: legal and compliance, technology, and data. The Data Protection Act (DPA) introduces new requirements and challenges for legal and compliance functions. Many organisations will require a Data Protection Officer (DPO) who will have a key role in ensuring compliance.
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}