Data Breach Notification (Template)
Data Breach Notification (Template)
Data Breach Notification (Template)
3.0, 28.04.2022
1. Supervisory authority
1.1. Country Finland
1.2. Supervisory authority the Data Protection Ombudsman
1.3. Website https://tietosuoja.fi/en/home
1.4. Data breach notification form https://tietosuoja.fi/en/data-breach-notification
1.5. Notification method SA’s webform
(SA’s webform, email, other)
1.6. Type of notification ☐ Complete notification
☐ Preliminary notification
☐ Complementary notification
1.7. Date and Time of notification
1.8. If there has been a delay in
reporting this breach, please
explain why
(after 72 hours)
1.9. Is this notification a cross border
notification made to your lead
supervisory authority?
1.10. Has the breach been or will it be
notified directly to other
concerned EU Supervisory
Authority?
1.11. Has the breach been or will it be
notified to Data Protection
Authorites outside the EEA?
1.12. Has the breach been or will it be
notified to other EEA regulators
because of other legal obligations
(NIS directive or eIDAS
regulation)?
2. About you
2.1. Name of the organisation
2.2. Business ID
2.3. VAT number
2.4. Sector of activity of the
organisation (industry)
2.5. Address and any relevant
contact details
2.6. Name and function of the
reporting person
2.7. Reporting person’s contact
details
2.8. Name and function of the
person who can be contacted
for more information about the
breach
2.9. Email address
2.10. Phone number
2.11. Postal address
2.12. Does the data breach concern Name, business ID and qualification of the other
other organisations? involved party:
3. Timeline
3.1. Beginning date of breach
3.2. Ending date of breach
3.3. Date of awareness of breach
3.4. Means of detection of breach
6. Consequences
6.1. Nature of the potential impact ☐ Loss of control over their personal data
for the data subject ☐ Limitation of their rights
☐ Discrimination
☐ Identity theft
☐ Fraud
☐ Financial lost
☐ Unauthorised reversal of pseudonymisation
☐ Damage to reputation
☐ Loss of confidentiality of personal data
protected by professional secrecy
☐ Other
Planned actions: