Introduction to privacy program management
Identifies privacy program management responsibilities, and describes the role of accountability in privacy program management.
Examines considerations for developing and implementing a privacy program, including the position of the privacy function within the organization, role of the DPO, program scope and charter, privacy strategy, support and ongoing involvement of key functions and privacy frameworks.
Applicable laws and regulations
Discusses the regulatory environment, common elements across jurisdictions and strategies for aligning compliance with organizational strategy.
Relates practical processes for creating and using data inventories/maps, gap analyses, privacy assessments, privacy impact assessments/data protection impact assessments and vendor assessments.
Describes common types of privacy-related policies, outlines components and offers strategies for implementation.
Data subject rights
Discusses operational considerations for communicating and ensuring data subject rights, including privacy notice, choice and consent, access and rectification, data portability, and erasure.
Training and awareness
Outlines strategies for developing and implementing privacy training and awareness programs.
Protecting personal information
Examines a holistic approach to protecting personal information through privacy by design.
Data breach incident plans
Provides guidance on planning for and responding to a data security incident or breach.
Measuring, monitoring and auditing program performance
Relates common practices for monitoring, measuring, analyzing and auditing privacy program performance.