Back to Frameworks

Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011)

Bosnia and Herzegovina
v2006 (amended 2011)
7 domains
24 controls

Bosnia and Herzegovina's Law on Protection of Personal Data (Official Gazette BiH No. 49/06, 76/11) establishes the data protection framework. The Personal Data Protection Agency of Bosnia and Herzegovina (AZLP) oversees enforcement. The law was modelled on the EU Data Protection Directive (95/46/EC). It covers processing principles, consent, data subject rights, cross-border transfers, and registration obligations. Amendments and alignment with GDPR have been under discussion as part of EU accession negotiations.

Verified

Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.

Framework Domains (7)

BiH DP Law Chapter I: General Provisions

3 controls
Controls in the BiH DP Law Chapter I: General Provisions domain of Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011)3 controls
CodeTitle
BA-DPA-1Purpose of the Law
BA-DPA-2Scope of the Law
BA-DPA-3Definitions

BiH DP Law Chapter II: Principles and Lawful Processing

7 controls
Controls in the BiH DP Law Chapter II: Principles and Lawful Processing domain of Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011)7 controls
CodeTitle
BA-DPA-11Data Security
BA-DPA-12Data Processing by a Processor
BA-DPA-4Principles of Personal Data Processing
BA-DPA-5Consent by a Data Subject
BA-DPA-6The Right to Process Without the Data Subject's Consent
BA-DPA-7Data Authenticity
BA-DPA-9Processing of Special Categories of Personal Data

BiH DP Law Chapter III: Records, Confidentiality and Transfers

4 controls
Controls in the BiH DP Law Chapter III: Records, Confidentiality and Transfers domain of Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011)4 controls
CodeTitle
BA-DPA-13Personal Data Filing System
BA-DPA-14Central Registry
BA-DPA-16Confidentiality Requirement
BA-DPA-18Data Transfer Abroad

BiH DP Law Chapter IV: Rights of Data Subjects

4 controls
Controls in the BiH DP Law Chapter IV: Rights of Data Subjects domain of Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011)4 controls
CodeTitle
BA-DPA-22Notification on Data Collection
BA-DPA-24The Right to Personal Data Access
BA-DPA-27Corrigenda and Deletion of Data
BA-DPA-29Issuing Decisions Based on Automatic Data Processing

BiH DP Law Chapter V: Complaints and Liability

2 controls
Controls in the BiH DP Law Chapter V: Complaints and Liability domain of Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011)2 controls
CodeTitle
BA-DPA-30Filing Complaints
BA-DPA-32Liability for Damage

BiH DP Law Chapter VI: The Personal Data Protection Agency

3 controls
Controls in the BiH DP Law Chapter VI: The Personal Data Protection Agency domain of Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011)3 controls
CodeTitle
BA-DPA-35Definition of the Agency
BA-DPA-40Competencies of the Agency
BA-DPA-41Control Carried Out by the Agency

BiH DP Law Chapter VII: Offences and Penalties

1 controls
Controls in the BiH DP Law Chapter VII: Offences and Penalties domain of Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011)1 controls
CodeTitle
BA-DPA-48Offences and Fines

Your Compliance Coverage

If you comply with Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011), you already cover:

Maps to 4 other frameworks

24 total controls
GDPR
8 source controls mapped|7 target controls covered
33%
ISO 19011
1 source controls mapped|1 target controls covered
4%
ISO 31000:2018
1 source controls mapped|1 target controls covered
4%
ISO/IEC 17025:2017 - General Requirements for Testing and Calibration
1 source controls mapped|1 target controls covered
4%

Frequently Asked Questions

What is Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011)?

Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011) is a compliance framework from Bosnia and Herzegovina with 7 domains and 24 controls. Bosnia and Herzegovina's Law on Protection of Personal Data (Official Gazette BiH No. 49/06, 76/11) establishes the data protection framework. The Personal Data Protection Agency of Bosnia and Herzegovina (AZLP) oversees enforcement. The law was modelled on the EU Data Protection Directive (95/46/EC). It covers processing principles, consent, data subject rights, cross-border transfers, and registration obligations. Amendments and alignment with GDPR have been under discussion as part of EU accession negotiations. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.

How many controls does Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011) have?

Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011) has 24 controls organised across 7 domains. The largest domains are BiH DP Law Chapter II: Principles and Lawful Processing (7 controls), BiH DP Law Chapter III: Records, Confidentiality and Transfers (4 controls), BiH DP Law Chapter IV: Rights of Data Subjects (4 controls). Each control defines specific requirements that organisations must implement to achieve compliance.

What frameworks does Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011) map to?

Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011) maps to 4 other compliance frameworks. The top mapping partners are GDPR (33% coverage), ISO 19011 (4% coverage), ISO 31000:2018 (4% coverage). Use our comparison tool to explore control-level mappings between frameworks.

How do I get started with Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011) compliance?

Start your Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011) compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Bosnia and Herzegovina Law on Protection of Personal Data (2006, amended 2011) requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 24 controls and track your progress.

Start Your Compliance Journey

Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 718 frameworks.

Get Started Free →

Free forever — no credit card required