CNIL Guidance on Employee Monitoring and Workplace Video Surveillance
Access to premises, time clocks and biometrics – CNIL Guidance on Employee Monitoring and Workplace Video Surveillance

CNIL Guidance on Employee Monitoring and Workplace Video Surveillance ACC-7: ACC-7 Record the device in the record of processing and carry out a DPIA where risk is high, notably for biometrics

Access and time control devices are entered in the organisation's record of processing activities. Where the device is likely to create a high risk, in particular biometric access control, a data protection impact assessment is carried out, with the DPO involved where one is designated.

Maintained by Gerard Blokdyk

What else in your programme already covers this

This control maps to 2 controls across 1 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

GDPR · 2 controls

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in Access to premises, time clocks and biometrics – CNIL Guidance on Employee Monitoring and Workplace Video Surveillance

Query this from an agent

The graph holds this control, the 2 it maps to, and the evidence behind each claim, over MCP and REST.