Privacy - Enforcement of Sanctions, v1.0

Defines privacy requirements for organizations to identify who is responsible for sanctions for noncompliance with the privacy policy and that they are adequate and enforced.

Assessment Step

1
Privacy - Enforcement Of Sanctions (Privacy-EnforcementOfSanctions)
Does the organization identify who is responsible for sanctions for noncompliance with the privacy policy and that they are adequate and enforced?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) that support the assessor's response to this assessment step.
Parameter
Satisfied By Privacy Policyrequired
BOOLEAN : Is the organization's privacy policy the source for all supporting information for satisfying the issuance criteria of this Trustmark Definition? (TRUE=yes)

Conformance Criteria (1)

C-1
Who is responsible for sanctions for noncompliance with the privacy policy are adequate and enforced?
Citation
FCPP
Section C.4, Governance and Oversight