ISO/IEC 27000 Privacy And Protection of Personal Identifiable Information (PII), v2022

Specifies requirements in accordance with the security and privacy controls specified by ISO/IEC Publication 27001:2022, related to privacy and protection of personal identifiable information (pii).

Assessment Step

1
Privacy And Protection of Personal Identifiable Information (PII) (PrivacyAndProtectionofPersonalIdentifiableInformationPII)
Does the organization identify and meet the requirements for preserving privacy and protecting PII in accordance with applicable laws, regulations, and contractual requirements?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.

Conformance Criteria (1)

Privacy And Protection of Personal Identifiable Information (PII)
The organization shall identify and meet the requirements regarding the preservation of privacy and protection of PII according to applicable laws and regulations and contractual requirements.
Citations
27001
Annex A, Control 5.34
27002
Section 5.34