How to create a GDPR Compliance Checklist
Easy to Use Legal Templates
Quickly and easily create any legal agreement for you or your team.
Affordable Plans
Straightforward pricing plans and bespoke packages built to simplify all your legal demands.
Vast Document Library
Zegal’s comprehensive collection of agreements means you always have what you need at your fingertips.
What is a GDPR Compliance Checklist?
A GDPR Compliance Checklist is used to audit the ways in which companies collect and store data, and how they’re complying with the law.
A GDPR Compliance Checklist is a tool, intended as an aid when creating a record of the personal data held by your company. A comprehensive inventory of personal data held is a fundamental step towards GDPR compliance, as well as general good practice in data privacy protection.
It is structured around reasons for collecting and processing personal data. Please consider all areas of your business when deciding whether or not a section of this form applies to your company.
Who is responsible for ensuring GDPR Compliance?
Many large companies have a Data Protection Officer (DPO), who is responsible for maintaining the data under GDPR Compliance. In essence, the DPO assists data processors or controllers in maintaining data under GDPR compliance.
How do you prove you are GDPR compliant?
To maintain GDPR compliance an organization should work on the following things:
Data Protection Policy: A company should have a valid data protection policy in place for ensuring GDPR compliance.
Data Protection Impact Assessment: You must assess the impact of data protection on a regular basis.
Training Policy: Having a training policy will train employees and data protection officers about the use of data protection.
How to process personal data under GDPR?
For each purpose for processing personal data, you must identify a legal basis for the processing. The GDPR has set out 6 possible legal bases that can be relied on when processing personal data:
Consent: clear consent has been given for the processing of personal data for a specific purpose (consent must be specific to each purpose or opt-in and be easily withdrawn by the data subject, with evidence of this consent).
Contract: the processing is necessary for the performance of a contract you have entered into with an individual, or is necessary to carry out specific steps leading up to entering into a contract.
Legal obligation: the processing is necessary for complying with the law.
Vital interests: the processing is necessary to protect the vital interests of the data subject or another natural person.
Public function: the processing is necessary for a public body to perform a task in the public interest, or an official function.
Legitimate interests: the processing is necessary for your legitimate interests or the legitimate interests of a third party (applies unless these legitimate interests are overridden by a good reason to protect the individual’s personal data. A separate Legitimate Interest Assessment (LIA) is recommended).
Conclusion
The General Data Protection Regulation is a new privacy law in the European Union that came into force on 25 May 2018. The GDPR regulates the protection of personal data, which includes any information that can be used to identify a person, such as a name, identification number, location data, or online identifier, and a wide range of other types of information. So, following a GDPR Compliance Checklist in an organization ensures your collected data follows necessary GDPR requirements.
You Might Also Like
Along with this document, make sure you see these other templates in our library:
The Zegal Template Library
Zegal's template library is a list of essential and premium business templates for your everyday legal needs.
Save money and time without sacrificing quality or missing vital legal requirements. Whether you're a startup or a larger enterprise, Zegal lets anyone create a legal agreement.
Let us take care of the legals so you can focus on running your business.
If you need more help, our "Talk to a Lawyer" feature gives you access to a qualified lawyer to get all the expert advice you need.
Try it for free today!
Nice things people say about Zegal.
"Using Zegal allows us to take a lean and efficient approach that cuts costs while maximising results."

Alex So
Managing Partner

"Zegal is easy to use and customer service is responsive and helpful! I strongly recommend it!!"

Alan NG
CEO

"Zegal makes onboarding a new client or employee fast and simple."

Veronika Kuznetsova
Managing Director

“Zegal really works well for all our legal documentation needs, and it is also user-friendly and mobile at the same time.”

Daniel W. Ho
Managing Director & Principal Consultant

“Zegal is like my teammate, helps me draft the right template, quickly gets my work done, and also saves me money on legal needs.”

Alan Schmoll
CEO & Co-Founder

“With colleagues, partners, and clients across the globe, Zegal provides an easy-to-use tool that streamlines processes that saves costs and time.”

Tony Wines
CEO of Turnkey

“Zegal has been such a great help in my business operations.”

Amanda A Atan
Managing Director at VIBES Mastery

“With Zegal, we work smarter rather than harder. Being a business professional, a proper document management system is always a must.”

Edgar Kautzner
Managing Consultant

“Zegal, a platform for compact package of legal templates, secured e-signing, reasonable cost and high level customer service.”

Paul Falzon
Director

“Zegal is easy to use, affordable and the platform is simple to navigate which makes the process of putting together a document fast and fuss-free.”

Jonathan Wong
Founder & Managing Director

“Love the new flow/design, very quick and easy to use now. I have done 2 or 3 customer contracts in a flash over the past 2 days.”

Chris Head
General Manager and Managing Editor

“Consistently positive experiences with Zegal’s technology, and customer services teams, who ensure that our issues or questions are responded to immediately.”

Tony Wines
CEO of Turnkey
