Standards & legislation

GDPR

The General Data Protection Regulation (Regulation (EU) 2016/679) governs the protection of personal data across the EU: 99 articles on lawfulness, data subject rights, accountability and security.

GDPR in brief

The GDPR asks for more than a records register and a privacy statement: it requires demonstrable compliance, with appropriate technical and organisational measures, DPIAs for high risks and a sound handling of data subject rights.

In the Audirium library, GDPR articles are linked directly to controls, the largest legislation-to-control set in the library. Privorium builds on that with a complete privacy management system.

Verified counts

Legislation

99 articles

Verordening (EU) 2016/679 - Algemene Verordening Gegevensbescherming.

Links

127 legislation-to-control links

Direct references from statutory articles to concrete controls in the library.

Library

41 frameworks

This standard does not stand alone: the library counts 1,807 controls and 2,224 cross-references.

Get started with GDPR

Request a demo or see how Privorium supports this standard.

Frequently asked questions

What does the GDPR demonstrably require from my organisation?

Beyond a records register and a privacy statement, the GDPR requires demonstrable compliance: appropriate technical and organisational measures, DPIAs for high risks, processor agreements and a sound handling of data subject rights.

How does the GDPR relate to standards like ISO 27001?

Article 32 GDPR (security of processing) almost always lands in measures that also appear in ISO 27001 or the Dutch BIO. The Audirium library makes that link explicit with legislation-to-control references, the largest set in the library.

What does Privorium offer for the GDPR?

Privorium is Audirium's privacy management system: records of processing, DPIAs, data breach register, data subject rights and a GDPR compliance meter, linked to the same framework library.