Principles 5 to 7 of the UK GDPR are concerned with
- Storage limitation
- Integrity and confidentiality (security)
- Accountability
Watch the video to find out more:
Press the play button to watch the video
The fifth principle
Personal data shall be kept in a form which permits identification of data subjects for no longer than is necessary for the purposes for which the personal data are processed
taken from GDPR Article 5
The sixth principle
Personal data shall be processed in a manner that ensures appropriate security of the personal data, including protection against unauthorised or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organisational measures
taken from GDPR Article 5
The seventh principle
The controller shall be responsible for, and be able to demonstrate compliance with these principles
taken from GDPR Article 5
The controller described in principle 7 is not an individual but the organisation that is processing personal information, which must be registered for the process