Portugal Law No. 58/2019 - Data Protection Implementation Act
Security and Processor

Portugal Law No. 58/2019 - Data Protection Implementation Act PORTUGAL-5: Security of Processing and Processor Agreements

Per Portugal law + GDPR Articles 32 + 28: security + processor management. Requirements include (a) implement Security of Processing including organisational + technical + appropriate to risk per GDPR Article 32 + CNPD (Comissao Nacional de Proteccao de Dados) security guidance + (b) maintain Processor Agreements per GDPR Article 28 ensuring processors process only on documented instructions + maintain security + assist with rights + breach notification + (c) implement supplier + processor + sub-processor due diligence + (d) conduct regular security testing + (e) integrate with broader information security programme.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.