Final answer:
The GDPR is designed to outline the roles and responsibilities of data controllers and data processors, specifically for data protection and privacy within the EU and EEA.
Step-by-step explanation:
The obligations of data controllers and data processors will probably be outlined in the General Data Protection Regulation (GDPR). Unlike the SSAE SOC 2, PCI DSS, or ISO 31000, the GDPR is specifically focused on data protection and privacy for individuals within the European Union (EU) and the European Economic Area (EEA). It sets clear guidelines and requirements for how data should be handled by both controllers, who determine the purposes and means of processing personal data, and processors, who process personal data on behalf of the controller.