Privacy - Persons Subject To Policy, v1.0

Defines privacy requirements related organizations identifying who is subject to and who must comply with their security policy.

Assessment Step

1
Privacy - Persons Subject To Policy (Privacy-PersonsSubjectToPolicy)
Does the organization identify who is subject to the privacy policy, and identify who must comply with the policy; for example, organization personnel, participating agencies, and private contractors?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) that support the assessor's response to this assessment step.
Parameter
Satisfied By Privacy Policyrequired
BOOLEAN : Is the organization's privacy policy the source for all supporting information for satisfying the issuance criteria of this Trustmark Definition? (TRUE=yes)

Conformance Criteria (1)

C-1
Who is subject to the privacy policy? Identify who must comply with the policy; for example, center personnel, participating agencies, and private contractors.
Citation
FCPP
Section B.2, Policy Applicability and Legal Compliance