EuroComply
Konto erstellen
🇷🇴România

General Data Protection Regulation Compliance in Romania

GDPR governs the processing of personal data of EU residents. It requires lawful basis for processing, data subject rights, breach notification, and accountability measures.

How does GDPR apply in Romania?

GDPR applies in Romania under EU law with the same obligations as across the bloc — maximum fine €20M or 4% of global turnover. The national supervisory authority is the ANSPDCP (Autoritatea Națională de Supraveghere), which handles enforcement, complaints, and notifications. Deadline: In force since May 25, 2018.

  • Supervisory authority: ANSPDCP (Autoritatea Națională de Supraveghere)
  • Maximum fine: €20M or 4% of global turnover
  • Key deadline: In force since May 25, 2018
Supervisory authorityANSPDCP (Autoritatea Națională de Supraveghere)
Maximum fine€20M or 4% of global turnover
Key deadlineIn force since May 25, 2018
Sectors affectedAll sectors processing EU personal data
Deadline

In force since May 25, 2018

Max Fine

€20M or 4% of global turnover

Sectors Affected

All sectors processing EU personal data

Key GDPR Obligations for Romania Businesses

  • Maintain records of processing activities (ROPA)
  • Conduct Data Protection Impact Assessments
  • Appoint a Data Protection Officer (if required)
  • Implement data subject rights procedures
  • Report breaches within 72 hours

Does GDPR apply to your Romania business?

Find out in 2 minutes with our free regulation checker.

Check now — free
View full GDPR compliance guide

For informational purposes only. This is not legal advice — consult qualified legal counsel.