Shqipëria Posted on 2025-04-05 10:14:00

How much does the administration "care" about citizens' data? - Survey in public institutions in the country, only 44% implement the law

From Elisabeta Dosku

How much does the administration "care" about citizens' data? -

The protection of citizens' personal data continues to be a challenge for the country in terms of the implementation of legislation by public and private institutions.

During 2024, the Commissioner's Office, in order to monitor/supervise and implement legal obligations, addressed a letter regarding the implementation of the obligations of the legislation on the protection of personal data, to 45 public controllers, where among the main questions are related to technical-organizational security measures, access to databases, taking measures for the creation, maintenance and administration of SMSI, system interoperability, training, etc.

Referring to the annual report of this institution, from the declarations of 32 public institutions, in the capacity of controllers, the Commissioner's Office assesses that the problems found in public administration institutions are related to the lack of legal and technical knowledge on the obligations provided for by the legislation for the protection of personal data.

Referring to reports on the fulfillment of the respective measures by public institutions, it results that: 44% of public controllers stated that they have drafted and approved internal/regulatory acts regarding the protection of personal data; 16% of public controllers stated that they have defined rules on the manner of interaction with other databases; 25% of public controllers stated that they take measures on access levels, guarantee traceability and control of the actions of persons/personnel who have access to personal data; 28% of public controllers stated that they respect the principle of sufficiency for all information published on the official website as well as for data shared with third parties; 25% of controllers stated that they delegate processing processes and take measures for their security, but in no case was the existence of a contract specifying the obligations cited in the law specified; 12% of controllers stated that they have taken measures to create, maintain and administer an ISMS for the protection of personal data and 16% of controllers stated that they conduct continuous and tailored training of personnel regarding the protection of personal data.

Poll

Poll

Live TV

Latest news
All news

Most visited