Security governance
Controller and processor
Under the GDPR, the controller decides on the purpose and means of processing personal data, while the processor processes the data solely on the controller's instructions. The controller bears the main responsibility for the lawfulness of the processing, while the processor acts within the given instructions.
Related terms
Get CertOwl on the App Store
Free download · A+ and Network+ completely free
+ daily lessons, flashcards and full exam simulations