Danish Data Protection Authority
| Primary URL | Location | Industry | datatilsynet[.]dk |
Country
Denmark
|
Government - National
|
|---|
Profile
The Danish Data Protection Authority, known locally as Datatilsynet, is the national supervisory authority responsible for overseeing compliance with data protection legislation in Denmark. Its mandate covers the enforcement of the European Union’s General Data Protection Regulation (GDPR) as well as the Danish Data Protection Act. The authority provides guidance to organisations on how to process personal data lawfully and securely. It also handles complaints from individuals who believe their data protection rights have been violated. Through inspections and audits, Datatilsynet assesses whether controllers and processors adhere to legal obligations.
Datatilsynet’s jurisdiction extends to all entities operating within Denmark that collect, store, or otherwise process personal data, regardless of sector or size. This includes public administrations, private companies, non‑profit organisations, and any other body that falls under the scope of the data protection rules. The authority’s reach is nationwide, meaning it can intervene wherever a potential infringement occurs on Danish territory. While specific staffing figures are not disclosed in the source material, the organisation functions as a central point of contact for data protection matters across the country.
As an independent supervisory authority, Datatilsynet possesses the power to issue administrative fines and other corrective measures when violations are identified. It participates actively in the European Data Protection Board, contributing to the consistent application of the GDPR across member states. The authority also engages in outreach and awareness‑raising campaigns to inform both businesses and citizens about their rights and obligations under data protection law. The September 2023 DDoS attack on its website, claimed by the hacker group NoName057(16), highlighted the need for robust cyber‑resilience even for regulatory bodies.
Structurally, Datatilsynet operates as an independent public authority under the auspices of the Danish Ministry of Justice, which provides the legal framework for its activities while preserving its operational autonomy. It is not a subsidiary of any private entity and does not have a parent company in the commercial sense. Its governance includes a director general appointed by the Minister of Justice, supported by a board or council that oversees strategic direction. The authority’s funding comes from the Danish state budget, allowing it to carry out its supervisory functions without commercial influence.
