This coordinated enforcement action examines how organizations designate and position Data Protection Officers (DPOs) in compliance with GDPR requirements. It reviews the legal, organizational, and operational aspects of DPO roles, focusing on independence, expertise, and resource allocation. The document highlights common challenges, such as conflicts of interest and insufficient resources, and provides recommendations for ensuring DPOs can perform their tasks effectively while maintaining compliance. This initiative aims to strengthen the uniform application of GDPR and enhance accountability across Member States.
Author: European Data Protection Board
Status: Adopted / Published
Adoption date: 2024-01-16
Last updated: 08 Aug 2025
Category: Miscellaneous
Subcategory: Report