Special rules apply to international transfers of personal data. The General Data Protection Regulation (GDPR) applies across the European Economic Area (EEA). This includes all EU countries and Iceland, Liechtenstein and Norway. If you transfer personal data to a destination outside the EEA (a ‘third country’), you must follow the transfer mechanisms set out in GDPR.
Resources
Glossary to FAQs (PDF, 395 KB, 4 pages)
Glossary of Data Protection Terms (PDF, 367 KB, 2 pages)
Data Protection Commissioner v Facebook Ireland Ltd and Maximillian Schrems
HSE Transfer Impact Assessment (TIA) form (Word, 84 KB, 13 pages)
Schrems Compliance Legal FAQ
To request the Schrems Compliance Legal FAQ, and for queries, email the relevant contact below.
Technology and Transformation - international data transfer queries
Chris Meehan, Technology and Transformation, email: chris.meehan@hse.ie
Technology and Transformation helpdesk, email: oocio.nationalservicedesk@hse.ie
Regional queries
For projects or data processing involving international transfers not under Technology and Transformation governance:
West - Deputy Data Protection Officer, email: ddpo.west@hse.ie
Dublin North East - Deputy Data Protection Officer, email: ddpo.dne@hse.ie
Dublin Mid Leinster - Deputy Data Protection Officer, email: ddpo.dml@hse.ie
South - Deputy Data Protection Officer, email: ddpo.south@hse.ie
National – DPO and Head of Data Protection, email: dpo@hse.ie
Health research queries
For ethically approved studies involving international transfers:
Research and Development, email: researchanddevelopment@hse.ie
Research Ethics Committee, email: hse.rec@hse.ie
Legal issues and TIA support
For legal issues or questions about completing a Transfer Impact Assessment:
Office of Legal Services, email: ols@hse.ie
External guidance
Transfers of personal data to third countries or international organisations - dataprotection.ie