Openness and Transparency - Third Parties, v1.0

Defines privacy requirements for organizations to explicitly state any plans to share information with other parties at the time of its collection.

Assessment Step

1
Openness And Transparency - Third Parties (OpennessAndTransparency-ThirdParties)
Whenever any sensitive information is collected, does the organization explicitly state any plans to share it with other parties?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) that support the assessor's response to this assessment step.
Parameter
Information Typesrequired
ENUM_MULTI : Select the type(s) of sensitive information that apply.
  • PII
  • PHI
  • III
  • IIHI
  • Other

Conformance Criteria (1)

C-1
Whenever any personal information is collected, explicitly state any plans to share it with other parties.
Citation
ACM
Openness