PETs

Privacy-Enhancing Technologies (PETs) are techniques — such as encryption, differential privacy, and secure multiparty computation — that protect personal data while it is used. CDPSE covers applying PETs to enforce privacy in engineering.

All CDPSE Terms

Privacy by Design

Privacy by Design is the practice of embedding privacy protections into systems and processes from the outset rather than adding them later.

Privacy by Default

Privacy by Default means the most privacy-protective settings apply automatically without the user having to act.

Privacy Engineering

Privacy Engineering is the discipline of building technical privacy controls into architecture, applications, and infrastructure.

PETs

Privacy-Enhancing Technologies (PETs) are techniques — such as encryption, differential privacy, and secure multiparty computation — that protect personal data while it is used.

Personal Data

Personal Data is any information relating to an identified or identifiable individual, the asset that privacy programs exist to protect.

PII

Personally Identifiable Information (PII) is data that can identify a specific person on its own or combined with other data.

Data Classification

Data Classification labels data by sensitivity so that proportionate privacy and security controls can be applied.

Data Inventory

A Data Inventory (data map) records what personal data an organization holds, where it flows, and who processes it.

Data Minimization

Data Minimization is the principle of collecting and retaining only the personal data necessary for a stated purpose.

De-identification

De-identification removes or obscures identifying elements to reduce the link between data and an individual.

Anonymization

Anonymization irreversibly transforms data so an individual can no longer be identified, taking it outside most privacy regulations.

Pseudonymization

Pseudonymization replaces identifying fields with pseudonyms so data can be re-identified only with separately held information.

DPIA

A Data Protection Impact Assessment (DPIA), also called a privacy impact assessment, evaluates the privacy risks of a processing activity before it begins.

Privacy Risk

Privacy Risk is the potential for harm to individuals or the organization from improper handling of personal data.

Consent Management

Consent Management is the process and tooling for capturing, honoring, and revoking individuals' permissions for data processing.