Reducing Privacy Risk with SOC 2®
Privacy compliance is centered on controlling the use of PII (Personal Identifiable Information) from your customers, clients, and, in some cases, employees. The definition of PII varies but is generally information that identifies or is reasonably capable of being associated with a person. Privacy laws typically define:
- allowed purposes for collecting, using, or sharing PII.
- disclosure requirements.
- consent requirements.
- individuals’ rights to access, delete, or correct their PII.
- and the penalties for violations.
