← Back to glossary
🏛️

Data Controller

Data Management

Entity determining purposes and means of processing personal data.

Definition

A data controller determines the purposes and essential means of processing. Controllers must ensure lawful basis, transparency, security measures, and rights handling, and must manage processors via contracts.

In plain English Entity determining purposes and means of processing personal data.

Why this matters

Why it matters: Identifying the controller clarifies who is accountable.

Example

Example: Controller appoints processors for hosting and analytics under a data processing agreement.