The Commission Nationale de l’Informatique et des Libertés (CNIL) approves the Code of Conduct for IaaS submitted by the industry association Cloud Infrastructure Service Providers Europe (CISPE). The sector-specific Code of Conduct has pan-European effect and invokes various requirements for IaaS in order for them to be compliant with the GDPR. The code consists of remarks concerning scope definitions, data protection requirements, transparency duties, adherence, and governance obligations.
Original source