• Skip to main navigation
  • Skip to main content
  • Skip to footer
Actis : protection des données, RGPD, cybersécurité, Risk management

Actis Monaco

Hébergement et récupération de données sécurisés, gestion de crise, continuité et reprise d'activité, conformité, RGPD

MENUMENU
  • Services and solutions
        • Dematerialization
          • Pay slip dematerialization
          • Electronic invoicing
          • Electronic tendering
          • Dematerialization - mademat.mc
          • Electronic signature of documents
        • Compliance
          • GDPR and personal datas
        • Data security
          • Data hosting and recovery
          • NAS and file server data protection
          • Workstation data protection
          • Digital archiving
        • Crisis management
          • Business continuity plan
          • Business recovery plan
          • Crisis management 3.0
  • About Actis
        • Our story
        • Our values
        • Our credentials
        • Our partners
        • coordinates

          Offices
          Le george V
          14, avenue de Grande Bretagne
          98000 Monaco

          Open
          From monday to thursday
          8:30 to 12:30am | 2:00 to 6:00pm
          Friday
          8:30 to 12:30am | 2:00 to 5:00pm

        • Actis in Monaco

          Go to Actis' office (open a new window)
  • Contact us
  • Français
  • English
  • LinkedIN
  • Facebook
  • Twitter
  • Youtube
  • Back to top ↑

Author: Clarisse

Monaco: New law on the protection of personal data

The adoption of Bill No. 1.054 on the protection of personal data will bring a number of changes. Find out what they are.



Contact us

On 28 November 2024, during a legislative session, the members of the National Executive had the opportunity to vote on the Monegasque Bill n°1.054 on the protection of personal data.

The unanimous adoption of draft law no. 1.054 repeals the Monegasque law on the protection of personal data currently in force, namely law no. 1.165 of 23 December 1993.

The new law comprises 118 articles that apply to both the private and public sectors.

Objective of the new law: to align with RGPD standards

The objective is to guarantee Monaco a high level of personal data protection, equivalent to European standards. By bringing the Principality into line with the requirements of the European standards defined by the General Data Protection Regulation (GDPR), it would be possible for the European Commission to reassess Monaco and grant it an adequate level of protection in the coming months.

Major changes :

The adoption of Bill 1.054 on the protection of personal data has brought about a number of changes. The new law strengthens the obligations of data controllers and processors, while streamlining the formalities that previously had to be carried out with the Monegasque supervisory authority.

A new field of application :



  • Une nouvelle terminologie, utilisation du terme « données personnelles » au lieu de celui d’« informations nominatives ».


  • Élément de liste #2


  • Élément de liste #3



  • A new terminology, using the term ‘personal data’ instead of ‘nominative information’.


  • The new law introduces precise definitions of key terms, inspired by the RGPD.


  • The introduction of the status of the processor, already present in the GDPR but not clearly defined in Law no. 1.165 of 1993.


  • New requirements for the scope of the text.


  • Reinforcement of the requirements relating to consent, which must be ‘free, specific, informed and unambiguous’.


  • Simplification of the formalities to be carried out with the Control Authority.

Better protection for people in Monaco :

Law no. 1.054 introduces new rights for the people concerned:



  • Right to erasure > obtain the erasure of personal data from the controller as soon as possible.


  • Right to portability > receive personal data supplied by an individual to a data controller, in a structured, commonly used and machine-readable format, and have the right to transmit this data to another data controller without the data controller to which the personal data has been communicated hindering this.


  • Right to restrict processing > obtain from the controller the restriction of processing where the accuracy of the data is called into question, the processing is unlawful, the controller no longer needs the data for the purposes of the processing or where the data subject has objected to the processing.


  • Right of rectification > to rectify, complete, update, block or erase information concerning him or her when errors, inaccuracies or the presence of data whose collection, use, communication or storage is prohibited have been detected.

Of course, the data subject retains his or her pre-existing rights under Law no. 1.165, namely the right of access and the right to object.

More stringent obligations for data controllers and processors:



  • Notification of individuals by the data controller in the event of personal data breaches.


  • Rigorous maintenance of a processing register for each processing operation carried out.


  • Carrying out a data protection impact assessment (DPIA) where necessary.


  • The obligation, according to certain criteria, to appoint a Data Protection Officer (DPO) whose duties and functions are defined.

A new supervisory authority :

The “Autorité de Protection des Données Personnelles” (APDP) is the successor to the Commission de Contrôle des Informations Nominatives (CCIN).

Role of the new authority

The APDP is a new authority with powers of investigation, control and sanction:



  • Carry out checks and investigations.


  • Access the premises where data processing is carried out.


  • Request any relevant documents.


  • Issue warnings, formal notices, processing restrictions, processing bans and administrative fines.

Stronger penalties for non-compliance:

With regard to penalties for failure to comply with the legislation, Law no. 1.054 provides for heavy administrative fines, as already provided for under the RGPD at European level, and the select committee may decide to make the penalties imposed public.



  • Maximum fine of €5,000,000 or 2% of annual worldwide turnover for failure to comply with various obligations, including cooperation with the data protection authority or notification of data breaches.


  • Maximum fine of €10,000,000 or 4% of worldwide annual turnover for more serious offences, such as failure to comply with the principles of lawfulness of processing, the rights of data subjects or data transfers.

An ACTIS meeting to find out more:

On 18 December, ACTIS experts will be holding a videoconference to explain and discuss the new law. Register now, free of charge at : event.groupetelis@telis.mc

Monaco: New law on the protection of personal data

Posted on: 11 December 2024 Last updated on: 12 December 2024 Written by: Clarisse
The adoption of the Personal Data Protection Act will bring many changes. Find out what they are.
Continue reading “Monaco: New law on the protection of personal data”…

Legal Opinion on the dematerialization of payslips

Posted on: 14 May 2024 Last updated on: 17 May 2024 Written by: Clarisse
Actis asked the law firm Caprioli & Associés to produce a Legal Opinion attesting to the compliance of the process of dematerialising payslips in the Principality of Monaco with the requirements of Ministerial Order no. 2019-1088 of 20 December 2019 relating to electronic payslips.
Continue reading “Legal Opinion on the dematerialization of payslips”…

Recent Posts

Monaco: New law on the protection of personal data

The adoption of the Personal Data Protection Act will bring many changes. Find out what they are.
Continue reading “Monaco: New law on the protection of personal data”…

EDM for Human Resources

Mademat.mc's online EDM offers simple solutions to facilitate the monitoring and productivity of recurring HR tasks. Employee entry and exit procedures, document retrieval, absence management, compliance action management...
Continue reading “EDM for Human Resources”…

Legal Opinion on the dematerialization of payslips

Actis asked the law firm Caprioli & Associés to produce a Legal Opinion attesting to the compliance of the process of dematerialising payslips in the Principality of Monaco with the requirements of Ministerial Order no. 2019-1088 of 20 December 2019 relating to electronic payslips.
Continue reading “Legal Opinion on the dematerialization of payslips”…

Season’s greetings

The telis Group teams would like to wish you a happy festive season. During this period we remain at your disposal!
Continue reading “Season’s greetings”…

Crisis management : Workshop with Extended Monaco

On 11 May 2023, Actis and its partners ran a digital workshop on the theme of Crisis Management with Extended Monaco, based on a practical case study.
Continue reading “Crisis management : Workshop with Extended Monaco”…

Recent Comments

    Archives

    • December 2024
    • August 2024
    • May 2024
    • December 2023
    • June 2023
    • March 2023
    • September 2022
    • July 2022
    • February 2022
    • December 2021
    • September 2021
    • July 2021
    • June 2021
    • April 2021
    • December 2020
    • October 2020
    • August 2020
    • June 2020
    • May 2020
    • December 2019
    • November 2017
    • June 2014
    • November 2013
    • June 2009
    • June 2008
    • January 2003

    Categories

    • 2021-gb
    • 2022-gb
    • Actis' Key stories
    • Credentials
    • Customer testimonials
    • Cyber security
    • Dematerialization
    • EDM-usage-fields
    • Events and conferences
    • GDPR compliance and personal data protection
    • Good Practices
    • IT Trends
    • News
    • Not indexed
    • Special Offers

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Our services

    • Pay slip dematerialization
    • Electronic invoicing
    • Documents dematerialization with mademat.mc
    • Electronic signature of documents
    • Electronic tendering
    • Digital archiving with probative value
    • Secure data hosting, backup and recovery
    • Business recovery plan – Cyber resilience
    • Business continuity plan – Cyber resilience
    • Crisis management support and tools
    • GDPR compliance and personal datas protection

    Utilities

    • News
    • Events and conferences
    • Customer testimonials
    • Recruitment
    • Privacy policy
    • Cookies management policy
    • Other legal informations

    Themes

    • Special Offers
    • Dematerialization
    • GDPR compliance and personal data protection
    • Cyber security
    • Good Practices
    • IT Trends

    Groupe Telis

    • Telis Monaco : digital power et informatiqueTelis
    • Actis Monaco : résilience d'activité, protection de donnéesActis
    • EASYONE Monaco : Guest hospitality experience, digital signageEasyOne
    • MonacoDatacenter : datacenter green IT Haute sécurité à MonacoMonacoDATACENTER
    © 2025 Actis
    14 Avenue de Grande Bretagne, 98000 Monaco
    • LinkedIN
    • Facebook
    • Twitter
    • Youtube
    • Back to top ↑
    Gérer le consentement aux cookies
    Nous utilisons des cookies pour optimiser notre site web et notre service. Politique de protection des données personnelles
    Fonctionnel Always active
    Le stockage ou l’accès technique est strictement nécessaire dans la finalité d’intérêt légitime de permettre l’utilisation d’un service spécifique explicitement demandé par l’abonné ou l’utilisateur, ou dans le seul but d’effectuer la transmission d’une communication sur un réseau de communications électroniques.
    Préférences
    Le stockage ou l’accès technique est nécessaire dans la finalité d’intérêt légitime de stocker des préférences qui ne sont pas demandées par l’abonné ou l’utilisateur.
    Statistiques
    Le stockage ou l’accès technique qui est utilisé exclusivement à des fins statistiques. Le stockage ou l’accès technique qui est utilisé exclusivement dans des finalités statistiques anonymes. En l’absence d’une assignation à comparaître, d’une conformité volontaire de la part de votre fournisseur d’accès à internet ou d’enregistrements supplémentaires provenant d’une tierce partie, les informations stockées ou extraites à cette seule fin ne peuvent généralement pas être utilisées pour vous identifier.
    Marketing
    Le stockage ou l’accès technique est nécessaire pour créer des profils d’utilisateurs afin d’envoyer des publicités, ou pour suivre l’utilisateur sur un site web ou sur plusieurs sites web ayant des finalités marketing similaires.
    Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
    Voir les préférences
    {title} {title} {title}