When it comes to sharing Personal Data, do you know your responsibilities as a SaaS owner? If your 3rd party vendors are not in an adequate country you might face legal challenges. The easiest first step to compliance: pick a vendor from an adequate country.
When selecting your SaaS vendors, you should pay attention to what data you will share with them and where they are located.
Suppose your SaaS vendor is in an inadequate country, such as the US or parts of Canada. In that case, you can continue using these solutions, assuming additional security measures are in place.
If you have been following the news, the Schrems II ruling is rather damning. If your provider is in the US or sends data to a US company (even if hosted in the EU), you need to apply such measures, and the SCCs (Standard Contractual Clauses) are not enough.
Stay safe. Vet your Data Processor. Responsibility is yours! GDPR fines are real.
**Content of the website does not constitute legal advice**
Report
What a great resource, thank you for sharing. I find myself going back to it when I want to dig into the details.
Report
Nice representation, love the maps and the detailed info.
Wide Angle Analytics