REGISTER

FR
Search
×
FR

Placeholder headline

This is just a placeholder headline

API RP 1161: Hazardous Liquid Pipeline Operator Qualification (OQ) : Edition 6

$

301

BUY NOW

Placeholder headline

This is just a placeholder headline

API MPMS CH 22.6: Testing Protocols for Gas Chromatographs : Reaffirmed

$

192

BUY NOW

Placeholder headline

This is just a placeholder headline

API RP 1174: Onshore Hazardous Liquid Pipeline Emergency Preparedness and Response : Reaffirmed

$

182

BUY NOW

Placeholder headline

This is just a placeholder headline

API STD 624: Type Testing of Rising Stem Valves Equipped with Flexible Graphite Packing for Fugitive

$

171

BUY NOW

Placeholder headline

This is just a placeholder headline

API STD 20G: Welding Services for Equipment used in the Petroleum and Natural Gas Industry : Reaffirmed

$

164

BUY NOW

Placeholder headline

This is just a placeholder headline

API STD 624: Errata 2

$

0.00

BUY NOW

ISO 22307:2008

ISO 22307:2008 Financial services – Privacy impact assessment

CDN $273.00

SKU: dc5932fb5571 Category:

Description

ISO 22307:2008 recognizes that a privacy impact assessment (PIA) is an important financial services and banking management tool to be used within an organization, or by “contracted” third parties, to identify and mitigate privacy issues and risks associated with processing consumer data using automated, networked information systems.

ISO 22307:2008

  • describes the privacy impact assessment activity in general,
  • defines the common and required components of a privacy impact assessment, regardless of business systems affecting financial institutions, and
  • provides informative guidance to educate the reader on privacy impact assessments.

A privacy compliance audit differs from a privacy impact assessment in that the compliance audit determines an institution’s current level of compliance with the law and identifies steps to avoid future non-compliance with the law. While there are similarities between privacy impact assessments and privacy compliance audits in that they use some of the same skills and that they are tools used to avoid breaches of privacy, the primary concern of a compliance audit is simply to meet the requirements of the law, whereas a privacy impact assessment is intended to investigate further in order to identify ways to safeguard privacy optimally.

ISO 22307:2008 recognizes that the choices of financial and banking system development and risk management procedures are business decisions and, as such, the business decision makers need to be informed in order to be able to make informed decisions for their financial institutions. ISO 22307:2008 provides a privacy impact assessment structure (common PIA components, definitions and informative annexes) for institutions handling financial information that wish to use a privacy impact assessment as a tool to plan for, and manage, privacy issues within business systems that they consider to be vulnerable.

Edition

1

Published Date

2008-04-16

Status

PUBLISHED

Pages

28

Language Detail Icon

English

Format Secure Icon

Secure PDF

Abstract

ISO 22307:2008 recognizes that a privacy impact assessment (PIA) is an important financial services and banking management tool to be used within an organization, or by “contracted” third parties, to identify and mitigate privacy issues and risks associated with processing consumer data using automated, networked information systems.

ISO 22307:2008

  • describes the privacy impact assessment activity in general,
  • defines the common and required components of a privacy impact assessment, regardless of business systems affecting financial institutions, and
  • provides informative guidance to educate the reader on privacy impact assessments.

A privacy compliance audit differs from a privacy impact assessment in that the compliance audit determines an institution's current level of compliance with the law and identifies steps to avoid future non-compliance with the law. While there are similarities between privacy impact assessments and privacy compliance audits in that they use some of the same skills and that they are tools used to avoid breaches of privacy, the primary concern of a compliance audit is simply to meet the requirements of the law, whereas a privacy impact assessment is intended to investigate further in order to identify ways to safeguard privacy optimally.

ISO 22307:2008 recognizes that the choices of financial and banking system development and risk management procedures are business decisions and, as such, the business decision makers need to be informed in order to be able to make informed decisions for their financial institutions. ISO 22307:2008 provides a privacy impact assessment structure (common PIA components, definitions and informative annexes) for institutions handling financial information that wish to use a privacy impact assessment as a tool to plan for, and manage, privacy issues within business systems that they consider to be vulnerable.

Previous Editions

Can’t find what you are looking for?

Please contact us at: