Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018)
Austria's Data Protection Act (Datenschutzgesetz, DSG) as amended in 2018 supplements the EU GDPR with national provisions. The Datenschutzbehörde (DSB - Austrian Data Protection Authority) oversees enforcement. The DSG retains a constitutional right to data protection (Section 1 DSG has constitutional rank). Notable provisions include the age of digital consent (14 years), broad research derogations, specific rules for image processing (Bildaufnahme), and administrative and criminal penalties. Austria's data protection has constitutional status since 2000.
Get the official standard — this page is an AI-assisted companion tool, not a replacement for the authoritative text.
Visit ris.bka.gv.atFramework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.
Framework Domains (5)
Part 1: Constitutional Provision - Fundamental Right to Data Protection
| Code | Title |
|---|---|
| AT-DSG-1 | Section 1 - Fundamental right to data protection |
Part 2: GDPR Implementation and Supplementary Provisions
| Code | Title |
|---|---|
| AT-DSG-2 | Section 2 - Scope and application |
| AT-DSG-3 | Section 4(4) - Age of consent for children |
| AT-DSG-4 | Section 6 - Data secrecy (Datengeheimnis) |
| AT-DSG-5 | Section 9 - Media and journalistic exemption |
| AT-DSG-6 | Sections 12-13 - Image processing (video surveillance/CCTV) |
Part 3: Data Protection Authority
| Code | Title |
|---|---|
| AT-DSG-7 | Section 18 - Establishment of the Data Protection Authority |
| AT-DSG-8 | Section 22 - Functions and powers of the DPA |
| AT-DSG-9 | Section 24 - Complaint procedures |
Part 4: Remedies and Penalties
| Code | Title |
|---|---|
| AT-DSG-10 | Section 29 - Liability and right to compensation / civil jurisdiction |
| AT-DSG-11 | Sections 42-45 - Data subject rights (law enforcement) |
| AT-DSG-12 | Section 62 - Administrative penalties |
Part 5: Implementation of the Law Enforcement Directive
| Code | Title |
|---|---|
| AT-DSG-13 | Section 36 - Scope of law enforcement processing |
| AT-DSG-14 | Section 38 - Lawfulness of law enforcement processing |
Your Compliance Coverage
If you comply with Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018), you already cover:
FTC GLBA Safeguards Rule (16 CFR Part 314)
64%
9 controls mapped
Compare →Florida Digital Bill of Rights (FDBR)
64%
9 controls mapped
Compare →ISO/IEC 27400:2022
64%
9 controls mapped
Compare →+ 261 more: Azure Security Benchmark (64%), Vietnam Law on Cybersecurity (No. 24/2018/QH14) (57%)
See all 264 mapped frameworks ↓Maps to 264 other frameworks
Frequently Asked Questions
What is Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018)?
Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018) is a compliance framework from Austria with 5 domains and 14 controls. Austria's Data Protection Act (Datenschutzgesetz, DSG) as amended in 2018 supplements the EU GDPR with national provisions. The Datenschutzbehörde (DSB - Austrian Data Protection Authority) oversees enforcement. The DSG retains a constitutional right to data protection (Section 1 DSG has constitutional rank). Notable provisions include the age of digital consent (14 years), broad research derogations, specific rules for image processing (Bildaufnahme), and administrative and criminal penalties. Austria's data protection has constitutional status since 2000. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.
How many controls does Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018) have?
Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018) has 14 controls organised across 5 domains. The largest domains are Part 2: GDPR Implementation and Supplementary Provisions (5 controls), Part 3: Data Protection Authority (3 controls), Part 4: Remedies and Penalties (3 controls). Each control defines specific requirements that organisations must implement to achieve compliance.
What frameworks does Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018) map to?
Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018) maps to 264 other compliance frameworks. The top mapping partners are FTC GLBA Safeguards Rule (16 CFR Part 314) (64% coverage), Florida Digital Bill of Rights (FDBR) (64% coverage), ISO/IEC 27400:2022 (64% coverage). Use our comparison tool to explore control-level mappings between frameworks.
How do I get started with Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018) compliance?
Start your Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018) compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018) requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 14 controls and track your progress.
Start Your Compliance Journey
Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 718 frameworks.
Get Started Free →Free forever — no credit card required