{
  "$TMF_VERSION": "1.4",
  "PublicationDateTime": "2021-04-26T00:00:00.000Z",
  "Description": "Profile of requirements corresponding to NIST Special Publication 800-53 r4, Privacy Control TR-1: Privacy Notice.",
  "Keywords": [
    "800-53",
    "NIST",
    "Privacy",
    "Privacy Notice",
    "Transparency"
  ],
  "Issuer": {
    "Identifier": "https://trustmarkinitiative.org/",
    "PrimaryContact": {
      "Email": "help@trustmarkinitiative.org",
      "Telephone": "555-555-5555",
      "Kind": "PRIMARY",
      "WebsiteURL": "https://trustmarkinitiative.org/",
      "Responder": ""
    },
    "Name": "TMI"
  },
  "Sources": [{
    "Identifier": "SP800-53R4",
    "Reference": "NIST Special Publication 800-53 Revision 4, Security and Privacy Controls for Federal Information Systems and Organizations, National Institute of Standards and Technology, April 2013 (Includes updates as of 01-15-2014). Available at <a href=\"http://dx.doi.org/10.6028/NIST.SP.800-53r4\">http://dx.doi.org/10.6028/NIST.SP.800-53r4<\/a>.",
    "$id": "source-2112165102"
  }],
  "Name": "NIST SP 800-53 r4 Privacy Control TR-1: Privacy Notice",
  "TrustExpression": "TD_ref1 and TD_ref2 and TD_ref3 and TD_ref4 and TD_ref5 and TD_ref6 and TD_ref7 and TD_ref8 and TD_ref9 and TD_ref10 and TD_ref11 and TD_ref12 and TD_ref13 and TD_ref14 and TD_ref15 and TD_ref16",
  "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tips/nist-sp-800-53-r4-privacy-control-tr-1_-privacy-notice/4/",
  "Version": "4",
  "References": {"TrustmarkDefinitionRequirements": [
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-correction-of-pii/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding the ability to have PII amended or corrected if necessary.",
      "Number": 1,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-correction-of-pii/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding the ability to have PII amended or corrected if necessary.",
        "Number": 1,
        "Version": "1.0",
        "Name": "Privacy Notice - Effective Notice Regarding Correction of PII"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice - Effective Notice Regarding Correction of PII",
      "$id": "TD_ref1"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-choice-over-use-of-collect-pii/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding the choices, if any, individuals may have regarding how the organization uses PII.",
      "Number": 2,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-choice-over-use-of-collect-pii/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding the choices, if any, individuals may have regarding how the organization uses PII.",
        "Number": 2,
        "Version": "1.0",
        "Name": "Privacy Notice - Effective Notice Regarding Choice Over Use of Collect PII"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice - Effective Notice Regarding Choice Over Use of Collect PII",
      "$id": "TD_ref2"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-how-pii-shared/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes whether the organization shares PII with external entities, the categories of those entities, and the purposes for such sharing.",
      "Number": 3,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-how-pii-shared/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes whether the organization shares PII with external entities, the categories of those entities, and the purposes for such sharing.",
        "Number": 3,
        "Version": "1.0",
        "Name": "Privacy Notice Describes How PII Shared"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice Describes How PII Shared",
      "$id": "TD_ref3"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-updated-to-reflect-policy-changes-that-affect-pii-before-they-take-place/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization revises its public notices to reflect changes in practice or policy that affect PII before the change.",
      "Number": 4,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-updated-to-reflect-policy-changes-that-affect-pii-before-they-take-place/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization revises its public notices to reflect changes in practice or policy that affect PII before the change.",
        "Number": 4,
        "Version": "1.0",
        "Name": "Privacy Notice Updated to Reflect Policy Changes That Affect PII Before They Take Place"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice Updated to Reflect Policy Changes That Affect PII Before They Take Place",
      "$id": "TD_ref4"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-updated-to-reflect-changes-in-activities-that-affect-pii-after-they-take-place/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization revises its public notices to reflect changes in its activities that impact privacy, as soon as practicable after the change.",
      "Number": 5,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-updated-to-reflect-changes-in-activities-that-affect-pii-after-they-take-place/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization revises its public notices to reflect changes in its activities that impact privacy, as soon as practicable after the change.",
        "Number": 5,
        "Version": "1.0",
        "Name": "Privacy Notice Updated to Reflect Changes In Activities That Affect PII After They Take Place"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice Updated to Reflect Changes In Activities That Affect PII After They Take Place",
      "$id": "TD_ref5"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-individuals_-ability-to-access-their-pii/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes how individuals may obtain access to PII.",
      "Number": 6,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-individuals_-ability-to-access-their-pii/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes how individuals may obtain access to PII.",
        "Number": 6,
        "Version": "1.0",
        "Name": "Privacy Notice Describes Individuals' Ability to Access Their PII"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice Describes Individuals' Ability to Access Their PII",
      "$id": "TD_ref6"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-collected-pii-and-purpose/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes the PII the organization collects and the purpose(s) for which it collects that information.",
      "Number": 7,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-collected-pii-and-purpose/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes the PII the organization collects and the purpose(s) for which it collects that information.",
        "Number": 7,
        "Version": "1.0",
        "Name": "Privacy Notice Describes Collected PII and Purpose"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice Describes Collected PII and Purpose",
      "$id": "TD_ref7"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-individuals_-consent-options/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes whether individuals have the ability to consent to specific uses or sharing of PII and how to exercise any such consent.",
      "Number": 8,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-individuals_-consent-options/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes whether individuals have the ability to consent to specific uses or sharing of PII and how to exercise any such consent.",
        "Number": 8,
        "Version": "1.0",
        "Name": "Privacy Notice Describes Individuals' Consent Options"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice Describes Individuals' Consent Options",
      "$id": "TD_ref8"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-the-protection-of-pii/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes how the PII will be protected.",
      "Number": 9,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-the-protection-of-pii/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes how the PII will be protected.",
        "Number": 9,
        "Version": "1.0",
        "Name": "Privacy Notice Describes The Protection of PII"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice Describes The Protection of PII",
      "$id": "TD_ref9"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-how-pii-is-used/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes how the organization uses PII internally.",
      "Number": 10,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-describes-how-pii-is-used/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization's Privacy Notice describes how the organization uses PII internally.",
        "Number": 10,
        "Version": "1.0",
        "Name": "Privacy Notice Describes How PII Is Used"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice Describes How PII Is Used",
      "$id": "TD_ref10"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-access-to-pii/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding the ability to access PII.",
      "Number": 11,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-access-to-pii/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding the ability to access PII.",
        "Number": 11,
        "Version": "1.0",
        "Name": "Privacy Notice - Effective Notice Regarding Access to PII"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice - Effective Notice Regarding Access to PII",
      "$id": "TD_ref11"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-updated-to-reflect-policy-changes-that-affect-pii-after-they-take-place/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization revises its public notices to reflect changes in practice or policy that affect PII as soon as practicable after the change.",
      "Number": 12,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-updated-to-reflect-policy-changes-that-affect-pii-after-they-take-place/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization revises its public notices to reflect changes in practice or policy that affect PII as soon as practicable after the change.",
        "Number": 12,
        "Version": "1.0",
        "Name": "Privacy Notice Updated to Reflect Policy Changes That Affect PII After They Take Place"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice Updated to Reflect Policy Changes That Affect PII After They Take Place",
      "$id": "TD_ref12"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-the-authority-to-collect-pii/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding its authority for collecting PII.",
      "Number": 13,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-the-authority-to-collect-pii/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding its authority for collecting PII.",
        "Number": 13,
        "Version": "1.0",
        "Name": "Privacy Notice - Effective Notice Regarding The Authority to Collect PII"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice - Effective Notice Regarding The Authority to Collect PII",
      "$id": "TD_ref13"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-updated-to-reflect-changes-in-activities-that-affect-pii-before-they-take-place/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization revises its public notices to reflect changes in its activities that impact privacy, before the change.",
      "Number": 14,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice-updated-to-reflect-changes-in-activities-that-affect-pii-before-they-take-place/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization revises its public notices to reflect changes in its activities that impact privacy, before the change.",
        "Number": 14,
        "Version": "1.0",
        "Name": "Privacy Notice Updated to Reflect Changes In Activities That Affect PII Before They Take Place"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice Updated to Reflect Changes In Activities That Affect PII Before They Take Place",
      "$id": "TD_ref14"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-consequences-of-choice-over-use-of-collect-pii/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding the consequences of exercising or not exercising choices regarding the organization's use of PII.",
      "Number": 15,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-consequences-of-choice-over-use-of-collect-pii/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding the consequences of exercising or not exercising choices regarding the organization's use of PII.",
        "Number": 15,
        "Version": "1.0",
        "Name": "Privacy Notice - Effective Notice Regarding Consequences of Choice Over Use of Collect PII"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice - Effective Notice Regarding Consequences of Choice Over Use of Collect PII",
      "$id": "TD_ref15"
    },
    {
      "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-organizational-pii-activities/1.0/",
      "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding its activities that impact privacy, including its collection, use, sharing, safeguarding, maintenance, and disposal of personally identifiable information (PII).",
      "Number": 16,
      "Version": "1.0",
      "TrustmarkDefinitionReference": {
        "Identifier": "https://artifacts.trustmarkinitiative.org/lib/tds/privacy-notice---effective-notice-regarding-organizational-pii-activities/1.0/",
        "Description": "Defines conformance and assessment criteria for verifying that an organization provides effective notice to the public and to individuals regarding its activities that impact privacy, including its collection, use, sharing, safeguarding, maintenance, and disposal of personally identifiable information (PII).",
        "Number": 16,
        "Version": "1.0",
        "Name": "Privacy Notice - Effective Notice Regarding Organizational PII Activities"
      },
      "$Type": "TrustmarkDefinitionRequirement",
      "Name": "Privacy Notice - Effective Notice Regarding Organizational PII Activities",
      "$id": "TD_ref16"
    }
  ]},
  "Primary": "false",
  "LegalNotice": "This document and the information contained herein is provided on an \"AS IS\" basis, and the Georgia Tech Research Institute disclaims all warranties, express or implied, including but not limited to any warranty that the use of the information herein will not infringe any rights or any implied warranties or merchantability or fitness for a particular purpose. In addition, the Georgia Tech Research Institute disclaims legal liability for any loss incurred as a result of the use or reliance on the document or the information contained herein.",
  "$Type": "TrustInteroperabilityProfile"
}