UK GDPR and EU GDPR—combined personal data sub-processing schedule—pro-original processor
Published by a LexisNexis Information Law expert
PrecedentsUK GDPR and EU GDPR—combined personal data sub-processing schedule—pro-original processor
Published by a LexisNexis Information Law expert
PrecedentsThis precedent is for use between a Processor and sub-processor and assumes the customer (as the original processor) is seeking to flow down terms agreed with a controller entity based on Precedent: UK GDPR and EU GDPR—combined Personal data Processing schedule—pro-controller.
For a list of precedent provisions for use between a controller and processor, see: List of Data protection clauses and agreements for commercial transactions and personal data processing and sharing.
This precedent uses the additional defined terms ‘Agreement’, ‘Business Day’, ‘Customer’, ‘Services’, ‘Supplier’ and ‘Supplier Personnel’, which are unlikely to be specific to this schedule and which it is assumed are separately defined in the relevant agreement.
The Schedule
Part A: Operative provisions
1
Definitions
1.1
In this Schedule:
Applicable EEA Law
- •
means all applicable law(s) of the European Economic Area and European Union and of the relevant member state(s) of either;
Applicable UK Law
- •
means all applicable law(s) of the United Kingdom (or of any part of the United Kingdom);
Controller
- •
has the meaning given in applicable Data Protection Laws from time to time;
Controller Entity
- •
means
- •
To view the latest version of this document and thousands of others like it,
sign-in with LexisNexis or register for a free trial.