Article 26
Requirements and tasks
- The data protection officer must meet the following requirements:
- a. He or she has the required specialist knowledge.
- b. He or she carries out his or her work in relation to the federal body in a professionally independent manner and is not bound by instructions.
- He or she must carry out the following tasks:
- a. He or she participates in applying the data protection regulations, in particular in that he or she:
- examines the processing of personal data and recommends corrective measures if a breach of the data protection regulations is established;
- advises the controller on preparing the data protection impact assessment and reviews its implementation.
- b. He or she serves as a contact point for data subjects.
- c. He or she trains and advises employees of the federal body on data protection matters.
- a. He or she participates in applying the data protection regulations, in particular in that he or she: