New rules concerning protection of personal data

The Commission for protection of personal data adopted a new Regulation concerning the minimum level of technical and organizational measures and admissible type of protection of personal data.

The Regulation introduces five different types of personal data protection:
 – physical protection;
 – personal protection;
 – documentary protection;
 – protection of automatic information systems and/or networks; and
 – cryptographic protection.

 The new rules provide for four levels of impact, depending on the extent of the adverse effects that may be caused by unauthorized processing of personal data:
“extremely high”,
“high”,
“average” and
“low”.

Pursuant to the Personal Data Protection Act in case the administrator has not issued the above mentioned Instruction with all mandatory requisites, the administrator may be imposed penalties up to the amount of BGN 5’000, respectively up to BGN 10’000 for continuous breach.

Recent Posts

February 2, 2023

NON-WORKING DAYS FOR 2023

Public holidays in Bulgaria for 2023 are: New Year – January 1 (Sunday), non-working day is January 2 (Monday) Liberation of Bulgaria – March 3…

Continue reading
February 2, 2023

PAYMENT SERVICE PROVIDERS MUST REPORT TO TAX OFFICE

From the beginning of 2024, payment service providers, such as banks, money transfer companies, some online trading platforms, etc., will be obliged to report to…

Continue reading
February 2, 2023

UNUSED VACATION DAYS FOR 2020 EXPIRE

National Labor Inspectorate reminds at its web portal that the statute of limitations of employee’s paid leaves from 2020 expire until the end of 2022.…

Continue reading