To help organizations get started, the Autoriteit Persoonsgegevens (AP) has created a sample data breach register. All organizations can use this example.

Organizations are required to establish and maintain a data breach register. This is stated in the General Data Protection Regulation (Article 33(5)).
In this register, you keep track of what data breaches have occurred in your organization. You must record all data breaches that have occurred within your organization. Also the data breaches that you have not reported to the AP.
The law does not specify how a data breach register must look like. So you may decide what form your data breach register takes, as long as it contains the legally required information. To help organizations get started, the AP has created a sample register.
Download the sample register here.
Source: Autoriteit Persoonsgegevens
