BS EN ISO/IEC 29100:2020
$142.49
Information technology. Security techniques. Privacy framework
Published By | Publication Date | Number of Pages |
BSI | 2020 | 30 |
This International Standard provides a privacy framework which
-
specifies a common privacy terminology;
-
defines the actors and their roles in processing personally identifiable information (PII);
-
describes privacy safeguarding considerations; and
-
provides references to known privacy principles for information technology.
This International Standard is applicable to natural persons and organizations involved in specifying, procuring, architecting, designing, developing, testing, maintaining, administering, and operating information and communication technology systems or services where privacy controls are required for the processing of PII.
PDF Catalog
PDF Pages | PDF Title |
---|---|
2 | undefined |
4 | European foreword Endorsement notice |
6 | Foreword |
7 | Introduction |
9 | 1 Scope 2 Terms and definitions |
12 | 3 Symbols and abbreviated terms |
13 | 4 Basic elements of the privacy framework 4.1 Overview of the privacy framework 4.2 Actors and roles 4.2.1 PII principals 4.2.2 PII controllers 4.2.3 PII processors |
14 | 4.2.4 Third parties 4.3 Interactions |
15 | 4.4 Recognizing PII 4.4.1 Identifiers 4.4.2 Other distinguishing characteristics |
16 | 4.4.3 Information which is or might be linked to a PII principal 4.4.4 Pseudonymous data |
17 | 4.4.5 Metadata 4.4.6 Unsolicited PII 4.4.7 Sensitive PII |
18 | 4.5 Privacy safeguarding requirements |
19 | 4.5.1 Legal and regulatory factors 4.5.2 Contractual factors |
20 | 4.5.3 Business factors 4.5.4 Other factors |
21 | 4.6 Privacy policies 4.7 Privacy controls |
22 | 5 The privacy principles of ISO/IEC 29100 5.1 Overview of privacy principles 5.2 Consent and choice |
23 | 5.3 Purpose legitimacy and specification 5.4 Collection limitation |
24 | 5.5 Data minimization 5.6 Use, retention and disclosure limitation 5.7 Accuracy and quality |
25 | 5.8 Openness, transparency and notice 5.9 Individual participation and access |
26 | 5.10 Accountability 5.11 Information security |
27 | 5.12 Privacy compliance |
28 | Annex A (informative) Correspondence between ISO/IEC 29100 concepts and ISO/IEC 27000 concepts |
29 | Bibliography |