51Ƶ

Joint Controller Agreement for Switzerland

Joint Controller Agreement Template for Switzerland

This Joint Controller Agreement is a comprehensive legal document governed by Swiss law that establishes the framework for joint processing of personal data between two or more controllers. It meets requirements under the Swiss Federal Act on Data Protection (FADP) and considers GDPR compliance due to Switzerland's adequacy status. The agreement details the allocation of responsibilities, data security measures, breach notification procedures, and mechanisms for handling data subject rights, while specifically addressing Swiss legal requirements and jurisdictional considerations.

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Get template free

Your data doesn't train Genie's AI

You keep IP ownership of your docs

4.6 / 5
4.6 / 5
4.8 / 5

What is a Joint Controller Agreement?

This Joint Controller Agreement is essential when two or more organizations jointly determine the purposes and means of processing personal data in Switzerland. It's particularly relevant for collaborative projects, shared services, or joint ventures where multiple entities have decision-making power over data processing activities. The agreement must comply with the Swiss Federal Act on Data Protection (FADP) and considers GDPR requirements due to Switzerland's status as a country with EU adequacy. It should be used whenever organizations share responsibility for data processing decisions, defining clear roles, responsibilities, and liability allocation. The document includes detailed provisions for data security, breach notification, data subject rights, and specific Swiss law compliance requirements.

What sections should be included in a Joint Controller Agreement?

1. Parties: Identification of the joint controllers entering into the agreement

2. Background: Context of the joint processing activities and relationship between the parties

3. Definitions: Key terms used in the agreement, including Swiss law-specific terminology

4. Scope and Purpose: Defines the scope of joint processing activities and purposes of data processing

5. Roles and Responsibilities: Detailed allocation of responsibilities between joint controllers

6. Transparency and Data Subject Rights: Handling of data subject requests and transparency obligations

7. Data Security: Security measures required by both parties

8. Data Breach Notification: Procedures for handling and reporting data breaches

9. Liability and Indemnification: Allocation of liability between controllers and indemnification provisions

10. Term and Termination: Duration of the agreement and termination provisions

11. Governing Law and Jurisdiction: Confirmation of Swiss law application and jurisdiction

12. General Provisions: Standard contractual provisions including severability, entire agreement, etc.

What sections are optional to include in a Joint Controller Agreement?

1. Cross-border Transfers: Required when personal data is transferred outside Switzerland

2. Sub-processing: Include when joint controllers may engage sub-processors

3. Insurance Requirements: Include when specific insurance coverage is required

4. Audit Rights: Include when regular audits of compliance are required

5. Data Protection Impact Assessments: Include when processing activities require DPIAs

6. Special Categories of Data: Include when processing sensitive personal data

What schedules should be included in a Joint Controller Agreement?

1. Schedule 1 - Processing Activities: Detailed description of joint processing activities

2. Schedule 2 - Technical and Organizational Measures: Specific security measures implemented by both parties

3. Schedule 3 - Data Subject Information: Template privacy notices and information provided to data subjects

4. Schedule 4 - Data Breach Response Plan: Detailed procedures for handling data breaches

5. Schedule 5 - Contact Points: Key contacts for operational matters and emergencies

6. Appendix A - Data Categories and Purposes: Detailed list of data categories and processing purposes

Authors

Alex Denne

Head of Growth (Open Source Law) @ Genie AI | 3 x UCL-Certified in Contract Law & Drafting | 4+ Years Managing 1M+ Legal Documents

Jurisdiction

Switzerland

Publisher

Genie AI

Cost

Free to use

Find the exact document you need

International Data Transfer Addendum

Swiss law-governed addendum for regulating international personal data transfers, ensuring compliance with FADP requirements and data protection standards.

Download

Intra Group Agreement Data Protection

Swiss law-governed agreement regulating data protection and transfers between group companies under FADP/DSG.

Download

Joint Controller Agreement

A Swiss law-governed agreement establishing responsibilities and obligations between joint controllers for personal data processing under FADP and considering GDPR requirements.

Download

Standard Data Processing Agreement

Swiss law-governed Data Processing Agreement establishing controller-processor obligations under FADP/DSG and aligned with GDPR requirements.

Download

Data Addendum

Swiss law-governed data protection addendum establishing data processing obligations and compliance with FADP/DPA requirements.

Download

Data Processing Addendum DPA

A Swiss law-governed agreement defining terms and responsibilities for personal data processing between controller and processor, ensuring compliance with FADP/revFADP and relevant GDPR requirements.

Download

International Data Protection Agreement

Swiss law-governed agreement regulating international data protection and cross-border data transfers, ensuring compliance with Swiss FADP and relevant international standards.

Download

Data Sharing Agreement Controller To Processor

Swiss law-governed Data Sharing Agreement between Controller and Processor, ensuring FADP/LPD compliance and establishing data processing safeguards.

Download

Processor To Processor DPA

A Swiss law-governed agreement between two data processors establishing terms and conditions for delegated data processing activities.

Download

Master Data Protection Agreement

A Swiss law-governed agreement establishing data processing requirements and responsibilities between controllers and processors under FADP/nDSG.

Download

Controller To Controller Data Processing Agreement

Swiss law-governed agreement establishing data sharing framework between two independent data controllers, ensuring FADP compliance and defining mutual data protection responsibilities.

Download

Intercompany Data Processing Agreement

Swiss law-governed agreement regulating intra-group personal data processing activities, ensuring compliance with Swiss FADP and relevant GDPR requirements.

Download

Controller To Controller DPA

Swiss law-governed agreement between two data controllers establishing framework for lawful personal data sharing and processing.

Download

DPA Agreement

Swiss law-governed Data Processing Agreement defining controller-processor relationships and compliance requirements under FADP/DSG.

Download

Order Processing Agreement

A Swiss law-governed agreement between a data controller and processor that establishes obligations and responsibilities for personal data processing under FADP/DSG.

Download

Data Privacy Addendum

Swiss law-governed Data Privacy Addendum ensuring compliance with Swiss FADP/revFADP and alignment with GDPR requirements for personal data processing.

Download

Sub Processing Agreement

A Swiss law-governed agreement establishing terms for sub-processor data handling, ensuring compliance with Swiss FADP and related data protection requirements.

Download

International Data Transfer Agreement

Swiss-law governed International Data Transfer Agreement for compliant cross-border personal data transfers under the revFDPA.

Download

Data Protection Addendum

A Swiss law-governed Data Protection Addendum establishing data processing requirements and responsibilities between parties under Swiss FADP/DSG.

Download
See more related templates

ұԾ’s Security Promise

Genie is the safest place to draft. Here’s how we prioritise your privacy and security.

Your documents are private:

We do not train on your data; ұԾ’s AI improves independently

All data stored on Genie is private to your organisation

Your documents are protected:

Your documents are protected by ultra-secure 256-bit encryption

We are ISO27001 certified, so your data is secure

Organizational security:

You retain IP ownership of your documents and their information

You have full control over your data and who gets to see it