Belgium Data Protection Act (Wet van 30 juli 2018, Loi du 30 juillet 2018)
Belgium DPA: Remedies and Penalties

Belgium Data Protection Act (Wet van 30 juli 2018, Loi du 30 juillet 2018) BE-DPA-14: Criminal penalties

Criminal penalties. Article 222 provides criminal sanctions (fines, and in defined cases imprisonment) for controllers, processors and their agents for specified infringements of the Act.

Maintained by Gerard BlokdykVerified against the published standard

What else in your programme already covers this

This control maps to 45 controls across 10 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

  • AT-DSG-10 Section 29 - Liability and right to compensation / civil jurisdiction
  • AT-DSG-12 Section 62 - Administrative penalties
  • AT-DSG-7 Section 18 - Establishment of the Data Protection Authority

ISO/IEC 27011:2024 · 3 controls

  • 27011-5.2 Information Security Roles in Telecoms
  • 27011-6.3 Awareness and Training
  • 27011-8.6 Data protection and backup
  • AZ-DPA-15 Article 17 - Dispute resolution
  • AZ-DPA-6 Article 6 - State regulation in personal data protection
  • BB-DPA-1 Section 1 - Short Title
  • BB-DPA-4 Section 4 - Principles Relating to Processing

ISO/IEC 27400:2022 · 2 controls

  • 27400-7.1 Network Security for IoT
  • 27400-7.4 Data retention and deletion
  • ASD37-27 Outbound data loss prevention (Very Good)
  • AL-DPA-14 Direct Marketing

ISO/IEC 29147:2018 · 1 control

  • 29147-5.8 Confidentiality of Reports
  • ACE-EX-3 Export License Verification

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in Belgium DPA: Remedies and Penalties

Query this from an agent

The graph holds this control, the 45 it maps to, and the evidence behind each claim, over MCP and REST.