Privacy - Data Quality and Integrity - Recipient Notification For Flawed Data, v1.0

Defines privacy requirements for organizations to review the quality of information they have provided to a third party and identify data that may be inaccurate or incomplete and notify the third party.

Assessment Step

1
Privacy - Data Quality And Integrity - Recipient Notification For Flawed Data (Privacy-DataQualityAndIntegrity-RecipientNotificationForFlawedData)
Does the organization review the quality of the information it has provided to an external party and identify data that may be inaccurate or incomplete, includes incorrectly merged information, is out of date, cannot be verified, has a questionable source, or lacks adequate context such that the rights of the individual may be affected, and notify the external party?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) that support the assessor's response to this assessment step.
Parameter
Satisfied By Privacy Policyrequired
BOOLEAN : Is the organization's privacy policy the source for all supporting information for satisfying the issuance criteria of this Trustmark Definition? (TRUE=yes)

Conformance Criteria (1)

C-1
When the center reviews the quality of the information it has provided to an external agency and identifies data that may be inaccurate or incomplete, includes incorrectly merged information, is out of date, cannot be verified, has a questionable source, or lacks adequate context such that the rights of the individual may be affected, does the center notify the external agency?
Citation
FCPP
Section G.7, Information Quality Assurance