Create a bespoke document in minutes, or upload and review your own.
Get your first 2 documents free
Your data doesn't train Genie's AI
You keep IP ownership of your information
Data Transfer Agreement
1. Parties: Identification of the data exporter and data importer, including their registered details and representatives
2. Background: Context of the data transfer relationship and purpose of the agreement
3. Definitions: Key terms used in the agreement, including GDPR-specific terminology
4. Scope and Purpose of Processing: Details of what personal data will be transferred and for what purposes
5. Obligations of the Data Exporter: Responsibilities and warranties of the party sending the data
6. Obligations of the Data Importer: Responsibilities and warranties of the party receiving the data, including security measures
7. Data Subject Rights: Procedures for handling data subject requests and ensuring data subject rights
8. Security Measures: Required technical and organizational security measures for data protection
9. Sub-processing: Conditions and requirements for engaging sub-processors
10. Data Breaches: Procedures for handling and reporting personal data breaches
11. Audit Rights: Rights of the data exporter to audit compliance and related procedures
12. Duration and Termination: Term of the agreement and termination provisions
13. Governing Law and Jurisdiction: Specification of Danish law as governing law and jurisdiction for disputes
14. Signatures: Execution blocks for authorized representatives of both parties
1. International Transfer Mechanisms: Required when transferring data outside the EEA, incorporating Standard Contractual Clauses or other transfer mechanisms
2. Special Categories of Data: Additional provisions required when transferring sensitive personal data
3. Data Protection Impact Assessment: Reference to and requirements from any DPIA conducted for high-risk processing
4. Compensation and Liability: Specific provisions on liability allocation and indemnification
5. Insurance Requirements: Specific insurance obligations for data protection
6. Service Levels: If specific performance metrics apply to the data transfer activities
7. Business Continuity: Additional provisions for ensuring continuous data availability and disaster recovery
1. Schedule 1 - Details of Processing: Detailed description of data subjects, categories of data, processing activities, and purposes
2. Schedule 2 - Technical and Organizational Measures: Detailed security measures and controls implemented by the data importer
3. Schedule 3 - Approved Sub-processors: List of pre-approved sub-processors and their processing activities
4. Schedule 4 - Transfer Impact Assessment: Assessment of risks and safeguards for international transfers
5. Schedule 5 - Standard Contractual Clauses: If applicable, the full SCCs for international transfers
6. Schedule 6 - Contact Points: List of key contacts for operational, security, and breach notification purposes
7. Schedule 7 - Data Return/Deletion Procedures: Detailed procedures for returning or deleting data upon termination
Authors
Applicable Data Protection Laws
Approved Sub-processor
Business Day
Controller
Data Exporter
Data Importer
Data Protection Authority
Data Protection Impact Assessment
Data Subject
Data Subject Rights
Danish Data Protection Act
EEA
EU Standard Contractual Clauses
GDPR
International Transfer
Personal Data
Personal Data Breach
Processing
Processor
Professional Services
Restricted Transfer
Security Measures
Special Categories of Personal Data
Sub-processor
Supervisory Authority
Technical and Organizational Measures
Term
Third Country
Transfer Impact Assessment
Scope of Processing
Data Protection Compliance
Transfer Mechanisms
Security Requirements
Confidentiality
Sub-processing
Audit Rights
Data Subject Rights
Data Breach Notification
Liability
Indemnification
Insurance
Term and Termination
Return or Deletion of Data
Governing Law
Dispute Resolution
Force Majeure
Assignment
Notices
Entire Agreement
Severability
Amendments
Third Party Rights
Representations and Warranties
Survival
Find the exact document you need
Download our whitepaper on the future of AI in Legal
Genie’s Security Promise
Genie is the safest place to draft. Here’s how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; Genie’s AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
Our bank-grade security infrastructure undergoes regular external audits
We are ISO27001 certified, so your data is secure
Organizational security
You retain IP ownership of your documents
You have full control over your data and who gets to see it
Innovation in privacy:
Genie partnered with the Computational Privacy Department at Imperial College London
Together, we ran a £1 million research project on privacy and anonymity in legal contracts
Want to know more?
Visit our Trust Centre for more details and real-time security updates.
Read our Privacy Policy.