Consent Management
Consent Management is the process and tooling for capturing, honoring, and revoking individuals' permissions for data processing. CDPSE covers it as a technical privacy control in the engineering domain.
Consent Management is the process and tooling for capturing, honoring, and revoking individuals' permissions for data processing. CDPSE covers it as a technical privacy control in the engineering domain.
Privacy by Design is the practice of embedding privacy protections into systems and processes from the outset rather than adding them later.
Privacy by Default means the most privacy-protective settings apply automatically without the user having to act.
Privacy Engineering is the discipline of building technical privacy controls into architecture, applications, and infrastructure.
Privacy-Enhancing Technologies (PETs) are techniques — such as encryption, differential privacy, and secure multiparty computation — that protect personal data while it is used.
Personal Data is any information relating to an identified or identifiable individual, the asset that privacy programs exist to protect.
Personally Identifiable Information (PII) is data that can identify a specific person on its own or combined with other data.
Data Classification labels data by sensitivity so that proportionate privacy and security controls can be applied.
A Data Inventory (data map) records what personal data an organization holds, where it flows, and who processes it.
Data Minimization is the principle of collecting and retaining only the personal data necessary for a stated purpose.
De-identification removes or obscures identifying elements to reduce the link between data and an individual.
Anonymization irreversibly transforms data so an individual can no longer be identified, taking it outside most privacy regulations.
Pseudonymization replaces identifying fields with pseudonyms so data can be re-identified only with separately held information.
A Data Protection Impact Assessment (DPIA), also called a privacy impact assessment, evaluates the privacy risks of a processing activity before it begins.
Privacy Risk is the potential for harm to individuals or the organization from improper handling of personal data.
Consent Management is the process and tooling for capturing, honoring, and revoking individuals' permissions for data processing.