Notification of personal data breach. 2.6.1 OT shall notify the Customer of a Personal Data Breach without undue delay after OT becoming aware of it by email to a Customer email address on file with OT, along with any necessary documentation to enable the Customer, where necessary, to notify this breach to the Data Subject and / or the competent Supervisory Authority. 2.6.2 If available and taking into account the nature of the Processing, the notification in accordance with Section 2.6.2 shall at least: A. describe the nature of the Personal Data Breach including where possible, the categories and approximate number of Data Subjects concerned, and the categories and approximate number of Personal Data records concerned; B. communicate the name and contact details of the data protection officer or other contact point where more information can be obtained; C. describe the likely consequences of the Personal Data Breach; and D. describe the measures taken or proposed to be taken by OT to address the Personal Data Breach, including, where appropriate, measures to mitigate its possible adverse effects. 2.6.3 Where, and in so far as, it is not possible to provide the information at the same time, the information may be provided in phases without undue further delay. 2.6.4 The Customer (or the party acting as Controller) is responsible to notify the Personal Data Breach to the Supervisory Authority, and to the Data Subjects, when this is required by the applicable Data Protection Legislation.
Appears in 3 contracts
Samples: Professional Services Agreement, Data Processing Addendum, Data Processing Addendum
Notification of personal data breach. 2.6.1 OT 8.1 Open Text shall notify the Customer of a Personal Data Breach without undue delay after OT becoming aware of it by email to a Customer email address on file with OTOpen Text, along with any necessary documentation to enable the Customer, where necessary, to notify this breach to the Data Subject and / or the competent Supervisory Authority.
2.6.2 8.2 If available and taking into account the nature of the Processing, the notification in accordance with Section 2.6.2 clause
8.1 shall at least:
A. 8.2.1 describe the nature of the Personal Data Breach including where possible, the categories and approximate number of Data Subjects concerned, and the categories and approximate number of Personal Data records concerned;
B. 8.2.2 communicate the name and contact details of the data protection officer or other contact point where more information can be obtained;
C. 8.2.3 describe the likely consequences of the Personal Data Breach; and;
D. 8.2.4 describe the measures taken or proposed to be taken by OT Open Text to address the Personal Data Breach, including, where appropriate, measures to mitigate its possible adverse effects.
2.6.3 8.3 Where, and in so far as, it is not possible to provide the information at the same time, the information may be provided in phases without undue further delay.
2.6.4 8.4 The Customer (or the party acting as Controller) is responsible to notify the Personal Data Breach to the Supervisory Authority, and to the Data Subjects, when this is required by the applicable Data Protection Legislation.
Appears in 1 contract
Samples: Professional Services Agreement