Create a bespoke document in minutes, or upload and review your own.
Get your first 2 documents free
Your data doesn't train Genie's AI
You keep IP ownership of your information
International Data Transfer Agreement
"I need an International Data Transfer Agreement for my Australian fintech company to transfer customer financial data to our new cloud service provider in Singapore, with implementation planned for March 2025, ensuring compliance with both Australian privacy laws and financial services regulations."
1. Parties: Identification of the data exporter and data importer, including full legal names, addresses, and registration details
2. Background: Context of the agreement, relationship between parties, and purpose of the data transfer
3. Definitions: Detailed definitions of key terms used throughout the agreement, including types of data, processing activities, and regulatory references
4. Scope and Purpose: Specific details about the data to be transferred, purposes of transfer, and processing activities permitted
5. Data Protection Obligations: Core obligations regarding data protection, security measures, and compliance with Australian Privacy Principles
6. Technical and Security Measures: Mandatory security requirements and standards for protecting transferred data
7. Confidentiality: Obligations regarding confidentiality of transferred data and security measures
8. Sub-Processing: Basic rules and restrictions regarding the use of sub-processors
9. Data Subject Rights: Procedures for handling data subject requests and ensuring their rights are protected
10. Data Breach Notification: Requirements and procedures for notifying data breaches under Australian law
11. Audit Rights: Rights of the data exporter to audit compliance with the agreement
12. Duration and Termination: Term of the agreement, renewal provisions, and termination circumstances
13. Governing Law and Jurisdiction: Specification of Australian law as governing law and jurisdiction for disputes
14. General Provisions: Standard contractual provisions including severability, entire agreement, and amendments
1. Special Categories of Data: Additional provisions for sensitive data categories as defined in the Privacy Act - include when sensitive data is being transferred
2. Data Minimization and Retention: Specific requirements for data minimization and retention periods - include when dealing with large volumes of data or long-term storage
3. Cross-Border Transfer Mechanisms: Additional mechanisms for transfers to specific countries - include when transferring to countries without adequate privacy protection
4. Industry-Specific Requirements: Additional provisions for specific industry regulations - include when dealing with regulated industries like healthcare or finance
5. Insurance Requirements: Specific insurance obligations - include when handling high-risk or high-value data
6. Business Continuity: Provisions for ensuring continuous data access and processing - include for critical business operations
7. Exit Management: Detailed procedures for contract termination and data return/deletion - include for complex data processing arrangements
1. Schedule 1 - Description of Transfer: Detailed description of data transfers, including categories of data subjects, data types, and processing purposes
2. Schedule 2 - Technical and Security Measures: Detailed technical and organizational security measures implemented by both parties
3. Schedule 3 - Authorized Sub-Processors: List of approved sub-processors and their processing activities
4. Schedule 4 - Transfer Impact Assessment: Assessment of privacy risks and mitigation measures for the transfer
5. Schedule 5 - Data Processing Activities: Detailed description of all processing activities to be performed
6. Appendix A - Contact Points: List of key contacts for operational, technical, and privacy matters
7. Appendix B - Standard Contractual Clauses: Any standard contractual clauses required for specific jurisdictions
Authors
Australian Privacy Law
Australian Privacy Principles
Authorized Personnel
Confidential Information
Data Breach
Data Exporter
Data Importer
Data Processing
Data Protection Laws
Data Subject
Data Transfer
Effective Date
Eligible Data Breach
Force Majeure Event
GDPR
Information Commissioner
Information Security Incident
Intellectual Property Rights
International Transfer
Law
Notice
Overseas Recipient
Personal Information
Personnel
Privacy Act
Processing Activities
Recipient
Representatives
Security Measures
Sensitive Information
Services
Sub-processor
Technical and Organizational Measures
Term
Third Party
Transfer Impact Assessment
Notifiable Data Breach
Cross-border Disclosure
Privacy Safeguards
Business Day
Jurisdiction
Controller
Processor
Permitted Purpose
Regulatory Authority
Security Standards
Data Protection Officer
Compliance Documentation
Interpretation
Data Protection Obligations
Cross-border Transfer
Security Requirements
Confidentiality
Sub-processing
Audit Rights
Data Subject Rights
Breach Notification
Liability
Indemnification
Insurance
Force Majeure
Term and Termination
Data Return and Deletion
Governing Law
Dispute Resolution
Assignment
Severability
Entire Agreement
Amendment
Notices
Warranties
Compliance with Laws
Technical Measures
Organizational Measures
Regulatory Cooperation
Access Control
Data Quality
Documentation
Personnel Obligations
Third Party Rights
Remedies
Emergency Measures
Business Continuity
Exit Management
Technology and Software
Financial Services
Healthcare and Medical
Professional Services
E-commerce and Retail
Manufacturing
Education
Telecommunications
Research and Development
Media and Entertainment
Insurance
Consulting Services
Legal
Privacy
Information Security
Compliance
Information Technology
Risk Management
Data Governance
Operations
International Business
Procurement
Information Management
Chief Privacy Officer
Data Protection Officer
Chief Information Security Officer
Privacy Counsel
Legal Counsel
Compliance Manager
IT Security Manager
Data Governance Manager
Risk Manager
Information Management Director
Privacy Manager
International Business Manager
Chief Technology Officer
Operations Director
Contract Manager
Information Security Analyst
Find the exact document you need
Personal Information Processing Agreement
An Australian law-governed agreement establishing terms for personal information processing between controllers and processors, ensuring compliance with the Privacy Act 1988 and APPs.
DPA Data Processing Addendum
An Australian-law compliant agreement that establishes terms for processing personal information under the Privacy Act 1988 and APPs, defining data handling obligations between controllers and processors.
Data Processing Agreement Addendum
An Australian-compliant addendum governing data processing responsibilities between controllers and processors under the Privacy Act 1988.
Joint Controller Agreement
An Australian law-governed agreement establishing rights and obligations between joint controllers of personal data under the Privacy Act 1988.
Intra Group Data Sharing Agreement
An Australian law-governed agreement regulating data sharing between entities within the same corporate group, ensuring compliance with privacy laws and data protection requirements.
Dpia Agreement
An Australian agreement governing the conduct of Data Protection Impact Assessments under the Privacy Act 1988 and related privacy laws.
Subprocessor Agreement
An Australian legal agreement governing data processing arrangements between a processor and subprocessor, ensuring compliance with Australian privacy laws and data protection requirements.
Master Data Protection Agreement
An Australian law-governed agreement establishing data protection obligations between parties, ensuring compliance with the Privacy Act 1988 and related privacy legislation.
Controller To Controller Data Processing Agreement
An Australian law-compliant agreement governing personal data sharing between two independent data controllers, ensuring Privacy Act 1988 and APP compliance.
Intra Group Data Transfer Agreement
An Australian law-compliant agreement governing data transfers between entities within the same corporate group, ensuring privacy law compliance and operational efficiency.
Data Management Agreement
An Australian law-governed agreement establishing data management and protection obligations between parties, ensuring compliance with Privacy Act 1988 and related legislation.
Intercompany Data Processing Agreement
An Australian law-governed agreement regulating data processing activities between related companies within the same corporate group.
Controller To Controller DPA
An Australian law-compliant agreement governing personal data sharing between two independent data controllers, ensuring Privacy Act compliance and data protection.
Intercompany Data Sharing Agreement
An Australian-law governed agreement for regulated data sharing between related corporate entities, incorporating privacy law compliance and data protection measures.
DPA Agreement
An Australian-law compliant agreement governing personal information processing between controllers and processors, ensuring adherence to the Privacy Act 1988 and APPs.
Third Party Data Processing Agreement
An Australian-compliant agreement governing the processing of personal information by third-party service providers under Privacy Act 1988 and APPs.
Data Transfer Addendum
An Australian law-compliant addendum governing data transfer arrangements between parties, ensuring compliance with the Privacy Act 1988 and APPs.
Supplier Data Processing Agreement
An Australian-law governed agreement setting out terms for processing personal information between an organization and its supplier, ensuring compliance with Australian privacy laws.
Controller Processor Agreement
An Australian law-compliant agreement governing the processing of personal data between a controller and processor, aligned with the Privacy Act 1988 and APPs.
Order Processing Agreement
An Australian-law governed agreement establishing terms for order processing services, including operational procedures, compliance requirements, and service levels.
Data Protection Agreement For Employees
An Australian-compliant employee data protection agreement establishing rights and obligations for handling personal information in the employment context.
Affiliate Addendum
An Australian law-governed addendum establishing terms and conditions for affiliate marketing relationships, including commercial terms and compliance requirements.
Sub Processing Agreement
An Australian-law governed agreement that establishes terms for sub-processing of personal data, ensuring compliance with privacy laws and data protection requirements.
International Data Transfer Agreement
An Australian law-compliant agreement governing cross-border data transfers, ensuring protection of personal information under the Privacy Act 1988 and APPs.
Data Transfer Agreement
An Australian law-governed agreement establishing terms for secure and compliant data transfer between organizations, ensuring adherence to Australian privacy regulations.
Download our whitepaper on the future of AI in Legal
Genie’s Security Promise
Genie is the safest place to draft. Here’s how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; Genie’s AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
Our bank-grade security infrastructure undergoes regular external audits
We are ISO27001 certified, so your data is secure
Organizational security
You retain IP ownership of your documents
You have full control over your data and who gets to see it
Innovation in privacy:
Genie partnered with the Computational Privacy Department at Imperial College London
Together, we ran a £1 million research project on privacy and anonymity in legal contracts
Want to know more?
Visit our Trust Centre for more details and real-time security updates.
Read our Privacy Policy.