Documentation
By Mark Sharron
•
14 December 2020
What is documentation in the GDPR?
Documentation refers to how an organisation describes and demonstrates how they process personal data and personal information. The GDPR says that this needs to be documented in order to give a clear view of how they operate and manage their information security.

Mark Sharron
Mark Sharron leads Search & Generative AI Strategy at ISMS.online. His focus is communicating how ISO 27001, ISO 42001 and SOC 2 work in practice - tying risk to controls, policies and evidence with audit-ready traceability. Mark partners with product and customer teams so this logic is embedded in workflows and web content - helping organisations understand, prove security, privacy and AI governance with confidence.
Read more from Mark Sharron