Privacy - Legal Compliance, v1.0

Defines privacy requirements related to organizations ensuring their personnel and participating information-originating third parties comply with all applicable laws addressing the gathering and collection, use, analysis, retention, destruction, sharing, disclosure, and dissemination of information.

Assessment Step

1
Privacy - Legal Compliance (Privacy-LegalCompliance)
Does the organization require that personnel and participating information-originating and user agencies are in compliance with all applicable constitutional and statutory laws protecting privacy, civil rights, and civil liberties in the gathering and collection, use, analysis, retention, destruction, sharing, disclosure, and dissemination of information?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) that support the assessor's response to this assessment step.
Parameter
Satisfied By Privacy Policyrequired
BOOLEAN : Is the organization's privacy policy the source for all supporting information for satisfying the issuance criteria of this Trustmark Definition? (TRUE=yes)

Conformance Criteria (1)

C-1
Does the center require personnel and participating information-originating and user agencies to be in compliance with all applicable constitutional and statutory laws protecting privacy, civil rights, and civil liberties in the gathering and collection, use, analysis, retention, destruction, sharing, disclosure, and dissemination of information?
Citation
FCPP
Section B.3, Policy Applicability and Legal Compliance