Create a bespoke document in minutes, Â or upload and review your own.
Get your first 2 documents free
Your data doesn't train Genie's AI
You keep IP ownership of your information
International Data Transfer Addendum
"I need an International Data Transfer Addendum for my South African fintech company to transfer customer payment data to our cloud service providers in Ireland and Singapore, with specific provisions for encryption and real-time monitoring."
1. Parties: Identification of the data exporter and data importer, including their full legal names, registration numbers, and addresses
2. Background: Context of the data transfer relationship and reference to the main agreement this addendum supplements
3. Definitions: Key terms used in the addendum, aligned with POPIA definitions and international data protection terminology
4. Scope and Purpose: Details of the data transfer activities covered by the addendum and their legitimate purpose
5. Data Protection Obligations: Core obligations of both parties regarding data protection, including compliance with POPIA requirements
6. Transfer Mechanisms: Legal basis for the transfer under Section 72 of POPIA and details of adequacy measures
7. Security Measures: Technical and organizational security measures implemented to protect the transferred data
8. Data Subject Rights: Procedures for handling data subject requests and ensuring their rights are protected
9. Breach Notification: Protocol for reporting and handling personal data breaches
10. Audit Rights: Rights and procedures for conducting audits of data protection compliance
11. Term and Termination: Duration of the addendum and conditions for termination
12. Return or Deletion of Data: Obligations regarding data handling upon termination of the agreement
13. Governing Law and Jurisdiction: Confirmation of South African law application and jurisdiction for disputes
1. Sub-processing: Include when the data importer may engage sub-processors to process the transferred data
2. Special Categories of Data: Include when sensitive personal information as defined in POPIA is being transferred
3. International Organizations: Include when transfers involve international organizations with specific immunities or privileges
4. Direct Collection: Include when data importer collects data directly from data subjects
5. Specific Processing Restrictions: Include when certain types of processing are prohibited or restricted
6. Insurance Requirements: Include when specific insurance coverage for data protection is required
7. Local Representative: Include when either party needs to appoint a local representative
1. Schedule 1 - Description of Transfer: Detailed description of the data transfer including categories of data subjects, types of personal information, frequency of transfer, and retention periods
2. Schedule 2 - Technical and Security Measures: Detailed specification of security measures implemented by both parties
3. Schedule 3 - Sub-processors: List of approved sub-processors and their processing activities, if applicable
4. Schedule 4 - Transfer Impact Assessment: Assessment of the privacy impact of the transfer and mitigation measures
5. Schedule 5 - Contact Points: List of key contacts for data protection matters, breach notification, and operational issues
6. Appendix A - Standard Contractual Clauses: If used, incorporation of standard contractual clauses or similar transfer mechanisms
7. Appendix B - Compliance Certifications: Copies or details of relevant data protection certifications held by either party
Authors
Financial Services
Healthcare
Technology and Software
Professional Services
Telecommunications
Manufacturing
Retail and E-commerce
Education
Insurance
Pharmaceuticals
Business Process Outsourcing
Cloud Services
Consulting
Research and Development
Legal
Compliance
Information Technology
Information Security
Risk Management
Data Protection
Privacy
International Operations
Procurement
Vendor Management
Chief Legal Officer
Data Protection Officer
Information Officer
Privacy Manager
Legal Counsel
Compliance Manager
IT Security Manager
Risk Manager
Chief Information Security Officer
Chief Technology Officer
Contract Manager
Privacy Lawyer
Information Security Analyst
Data Protection Specialist
International Business Manager
Find the exact document you need
International Data Transfer Addendum
A South African law-compliant addendum governing international transfers of personal information under POPIA requirements.
Intra Group Data Processing Agreement
A South African law-governed agreement regulating personal information processing between entities within the same corporate group, ensuring POPIA compliance.
Third Party Processing Agreement
A South African law-governed agreement regulating personal information processing between a responsible party and an operator under POPIA.
Data Processing Addendum
A South African law-compliant agreement governing personal information processing between controllers and processors under POPIA.
Intercompany Data Transfer Agreement
South African law-governed agreement regulating intra-group data transfers in compliance with POPIA and local data protection regulations.
Data Management Agreement
A South African law-compliant agreement governing data management and processing activities between organizations, ensuring POPIA compliance and data protection.
Data Controller To Data Controller Agreement
South African POPIA-compliant agreement governing personal information sharing between two data controllers, establishing mutual obligations and responsibilities.
DPA Agreement
A South African law-compliant Data Processing Agreement establishing terms for handling personal information under POPIA regulations.
Third Party Data Processing Agreement
A South African law-compliant agreement governing the processing of personal information by a third-party operator on behalf of a responsible party under POPIA.
Personal Data Transfer Agreement
A POPIA-compliant agreement for transferring personal information between parties under South African law.
Controller Processor Agreement
A South African law-governed agreement between a data controller and processor establishing terms for personal information processing under POPIA.
Affiliate Addendum
A South African law-compliant addendum establishing terms and conditions for affiliate marketing relationships, including commission structures and compliance requirements.
Sub Processing Agreement
A South African-compliant agreement governing the delegation of personal information processing activities to a sub-processor under POPIA requirements.
International Data Transfer Agreement
A South African law-governed agreement for cross-border personal information transfers, ensuring POPIA compliance and data protection standards.
Data Protection Addendum
A South African law-governed addendum establishing POPIA-compliant terms for personal information processing between parties.
Download our whitepaper on the future of AI in Legal
³Ò±ð²Ô¾±±ð’s Security Promise
Genie is the safest place to draft. Here’s how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; ³Ò±ð²Ô¾±±ð’s AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
Our bank-grade security infrastructure undergoes regular external audits
We are ISO27001 certified, so your data is secure
Organizational security
You retain IP ownership of your documents
You have full control over your data and who gets to see it
Innovation in privacy:
Genie partnered with the Computational Privacy Department at Imperial College London
Together, we ran a £1 million research project on privacy and anonymity in legal contracts
Want to know more?
Visit our for more details and real-time security updates.
Read our Privacy Policy.