Data protection and information security
Risk assessments of IT systems
Here you will find a purpose description and introduction to risk assessments at SDU as well as links to relevant guides from the Danish Data Protection Agency and Sikkerdigital.
Risk assessments at SDU
As part of our responsibility to ensure information security and protect the rights of data subjects, it is important that we conduct and document risk assessments.
Risk assessments are fundamental to SDU's security because they are the starting point for the organisation's knowledge and documentation of compliance challenges.
The Danish Data Protection Agency's requirement for documentation that personal data is processed effectively and lawfully means that risk assessments of the processing of personal data must be prepared. The Danish Data Protection Agency regularly conducts inspections of organisations, where the Danish Data Protection Agency may request documentation such as risk assessments. They only accept risk assessments made prior to receiving the request.
Do you have any questions?
The GDPR and Information Security Coordinators are your local contact and advisor for day-to-day data protection and information security at SDU.