TY - T1 - The controller’s role in determining ‘high risk’ and data protection impact assessment (DPIA) in developing digital smart city SN - / UR - http://hdl.handle.net/10138/318456 T3 - A1 - Bu-Pasha, Shakila A2 - PB - Y1 - 2020 LA - eng AB - Article 35 of the General Data Protection Regulation (GDPR) states that data controllers are required to carry out data protection impact assessment (DPIA) if a processing operation, particularly involving the use of new technologies, is ‘likely to result in a high risk to the rights and freedoms of natural persons’. The focus in this paper is on the role and responsibilities of data controllers in a smart city platform in assessing ‘high risk’ and the importance of impact assessment in relation... VO - IS - SP - OP - KW - 513 Law; DPIA; GDPR; High risk; joint controllers; personal data; smart city; technology N1 - PP - ER -