Create a bespoke document in minutes, Â or upload and review your own.
Get your first 2 documents free
Your data doesn't train Genie's AI
You keep IP ownership of your information
Controller To Controller Agreement GDPR
"I need a Controller to Controller Agreement GDPR under Irish law for a financial services company sharing customer transaction data with a third-party analytics provider, with specific provisions for international transfers to the US and enhanced security measures."
1. Parties: Identification of the data controllers entering into the agreement
2. Background: Context of the data sharing arrangement and relationship between the parties
3. Definitions: Definitions of key terms, including GDPR-specific terminology
4. Purpose and Scope: Detailed description of the purpose of data sharing and scope of data processing activities
5. Roles and Responsibilities: Clear delineation of each controller's roles and responsibilities
6. Legal Basis for Processing: Specification of the legal grounds under GDPR for data processing by each controller
7. Data Protection Principles: Commitment to GDPR principles and how they will be upheld
8. Security Measures: Required technical and organizational security measures
9. Data Breach Notification: Procedures for handling and notifying data breaches
10. Data Subject Rights: Procedures for handling data subject requests and ensuring rights
11. Term and Termination: Duration of the agreement and termination provisions
12. Liability and Indemnities: Allocation of responsibilities and liabilities between controllers
13. General Provisions: Standard contractual clauses including governing law, jurisdiction, etc.
1. International Transfers: Required when personal data will be transferred outside the EEA
2. Special Categories of Data: Required when processing sensitive personal data under Article 9 GDPR
3. Joint Projects: Needed when controllers collaborate on specific data processing projects
4. Sub-processing: Required when either controller may engage sub-processors
5. Insurance Requirements: Specific insurance obligations for high-risk processing
6. Audit Rights: Detailed audit provisions for high-risk or regulated sectors
7. Data Protection Impact Assessments: Required for high-risk processing activities
8. Industry-Specific Compliance: Additional requirements for regulated industries (e.g., healthcare, financial services)
1. Schedule 1 - Categories of Personal Data: Detailed list of personal data types being shared
2. Schedule 2 - Purpose of Processing: Detailed description of processing purposes and activities
3. Schedule 3 - Technical and Organizational Measures: Specific security measures implemented by each party
4. Schedule 4 - Transfer Mechanisms: Details of data transfer methods and safeguards
5. Schedule 5 - Contact Points: Key contacts for operational and breach notification purposes
6. Schedule 6 - Data Retention Periods: Specific retention periods for different data categories
7. Appendix A - Data Processing Details: Detailed information about processing activities
8. Appendix B - Security Requirements: Detailed security protocols and requirements
Authors
Healthcare
Financial Services
Education
Technology
Public Sector
Professional Services
Insurance
Telecommunications
Research and Development
Retail
Manufacturing
Transportation and Logistics
Energy and Utilities
Media and Entertainment
Legal
Compliance
Information Security
Data Protection
Risk Management
Information Technology
Operations
Privacy
Governance
Procurement
Information Management
Corporate Affairs
Regulatory Affairs
Data Protection Officer
Chief Privacy Officer
Legal Counsel
Compliance Manager
Information Security Manager
Risk Manager
Chief Information Security Officer
Privacy Manager
Chief Legal Officer
Compliance Officer
Data Governance Manager
Information Governance Manager
Chief Technology Officer
Chief Operations Officer
Contract Manager
Privacy Analyst
Data Protection Specialist
Find the exact document you need
Gdpr Intercompany Agreement
Irish law-governed GDPR Intercompany Agreement for regulating personal data transfers and processing between group companies under Irish and EU data protection requirements.
Sub Processor Agreement
An Irish law-governed agreement establishing terms for delegated data processing activities between a processor and sub-processor, ensuring GDPR compliance.
Data Processing Agreement Addendum
An Irish law-governed addendum establishing GDPR-compliant terms for data processing activities between controllers and processors.
Third Party Processing Agreement
An Irish law-governed agreement establishing terms for third-party processing of personal data in compliance with GDPR and local data protection requirements.
Data Processing Contract
An Irish law-governed agreement establishing terms for personal data processing activities between a Data Controller and Data Processor, ensuring GDPR compliance.
Data Processing Addendum
An Irish law-governed Data Processing Addendum that establishes GDPR-compliant terms for personal data processing between controllers and processors.
Data Addendum
An Irish law-governed Data Addendum establishing GDPR-compliant data processing terms between controllers and processors.
Controller To Controller Agreement GDPR
Irish law Controller to Controller Agreement establishing GDPR-compliant data sharing framework between independent data controllers.
Data Sharing Agreement Controller To Processor
An Irish law-governed agreement establishing terms for personal data processing between a Controller and Processor, ensuring GDPR compliance.
Third Party Data Processing Agreement
An Irish law-governed Data Processing Agreement establishing GDPR-compliant terms between a data controller and processor.
Data Transfer Addendum
An Irish law-governed addendum that establishes compliant mechanisms for international personal data transfers under GDPR and Irish data protection laws.
Controller Processor Agreement
An Irish law-governed agreement establishing terms for processing personal data under GDPR, between a data controller and processor.
Order Processing Agreement
An Irish law-governed agreement establishing terms for order processing services, ensuring GDPR compliance and data protection requirements.
Data Protection Agreement For Employees
An Irish law-governed agreement establishing data protection protocols between employer and employee, ensuring GDPR compliance and proper handling of employee personal data.
Sub Processing Agreement
An Irish law-governed agreement between a data processor and sub-processor establishing terms for personal data processing in compliance with GDPR and Irish data protection legislation.
International Data Transfer Agreement
Irish law-governed agreement for compliant transfer of personal data from Ireland/EU to non-EEA countries, ensuring GDPR and local law compliance.
Data Transfer Agreement
An Irish law-governed agreement establishing terms for compliant transfer of personal data between organizations under GDPR and Irish data protection legislation.
Download our whitepaper on the future of AI in Legal
³Ò±ð²Ô¾±±ð’s Security Promise
Genie is the safest place to draft. Here’s how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; ³Ò±ð²Ô¾±±ð’s AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
Our bank-grade security infrastructure undergoes regular external audits
We are ISO27001 certified, so your data is secure
Organizational security
You retain IP ownership of your documents
You have full control over your data and who gets to see it
Innovation in privacy:
Genie partnered with the Computational Privacy Department at Imperial College London
Together, we ran a £1 million research project on privacy and anonymity in legal contracts
Want to know more?
Visit our for more details and real-time security updates.
Read our Privacy Policy.