A retail company handles payroll accounting for its employees through a Software as a Service (SaaS) provider that uses a data center operator as a subcontractor. Who is responsible for the protection of the employees’ personal data?
A retail company handles payroll accounting for its employees through a Software as a Service (SaaS) provider that uses a data center operator as a subcontractor. Who is responsible for the protection of the employees’ personal data?
The retail company is responsible for the protection of the employees’ personal data. Even though they use a SaaS provider and a data center operator as subcontractors, the primary responsibility and accountability for data protection lies with the retail company as the data controller. They must ensure that their subcontractors comply with data protection regulations and safeguards.
PAGE 53 in the CDPSE manual states that the organization is responsible and accountable. Answer C
The retail company is still responsible for the data. It's their choice to use a SaaS provider.