Governance & Compliance · Human role

Data Protection Officer

Human roleGovernance & ComplianceSafety, Security & Governancearc:DataProtectionOfficer

A privacy-accountable human role that reviews lawful-basis choices, legitimate-interests assessments and DPIAs, handles escalated data-subject requests and advises on data-protection implications before new processing is adopted.

Responsibility. Holds accountability for day-to-day GDPR compliance decisions.

Also known as: DPO, Privacy team, Privacy officer

approvesauditsreceives escalation fromsends data toevaluatesevaluatesauditsStage Promotion Controller: approvesStage Promotion ControllerLawful Basis Record: auditsLawful Basis RecordData Subject Request Handler: receives escalation fromData Subject Request Han…Regulatory Authority: sends data toRegulatory AuthorityLegitimate Interests Basis: evaluatesLegitimate Interests BasisDPIA Record: evaluatesDPIA RecordRecords of Processing Register: auditsRecords of Processing Re…
Direct neighbourhood (hover for relationship types)

Relationships

receives escalation from dynamic

sends data to dynamic

approves control

audits assurance

evaluates assurance

Design guidance

Classification

Patterns
Privacy by design
Quality attributes
Transparency and accountability (NIST AI RMF: accountable and transparent)
Risks mitigated
Compliance problems discovered after substantial implementation investment
Frameworks & regulations
GDPR

Sources

  1. Ch9.7: T. Nguyen, "GDPR and Data Protection Regulations," in Mastering Agentic AI Systems: Guide for the NVIDIA NCP-AAI Exam, 1st ed. 2026, ch. 9.7. ISBN: 9798244538229.
  2. Ref9.05: "Privacy and Data Protection for AI Systems," unpublished reference note (references/Chapter 9 - Safety, Ethics, and Compliance/05-Privacy-Data-Protection.md), Mastering Agentic AI Systems: Guide for the NVIDIA NCP-AAI Exam supplementary materials, 2026. unpublished note