Intro Privacy Program Management Flashcards
What are the four phases of the privacy operational life cycle?
- Assess
- Protect
- Sustain
- Respond
What happens during the “Assess” phase of the privacy operational life cycle?
The assess phase involves comparing the program to industry best practices, corporate privacy policies, applicable laws and regulations and the organization’s privacy framework
What happens during the “Protect” phase of the privacy operational life cycle?
The protect phase embeds privacy principles and information security management practices to address, define and establish privacy practices
What happens during the “Sustain” phase of the privacy operational life cycle?
The sustain phase provides monitoring, auditing and communication aspects of the management framework
What happens during the “Respond” phase of the privacy operational life cycle?
The respond phase involves the principles of information requests, legal compliance, incident response planning and incident handling, as well as accountability for data collected
What are three primary responsibilities of privacy program managers? Which is the most important?
- Compliance
- Alignment with organizational strategy
- Accountability
Accountability is the most important aspect of privacy program management. Privacy Program Managers are responsible for safekeeping and responsible use of personal information.
Which organizational areas have specific privacy concerns? What are examples of each concern?
HR: Whistleblowing
Marketing: Providing privacy notices
Finance: Bonus calculations
Information security: Information access policy
IT: Enabling systems access
Legal: Vendor contracts