Security for Privacy
The Security for privacy principle requires your organization to protect personal information against unauthorized access (both physical and logical). One of the criteria (8.2.1) requires that a security program has been developed, documented, approved and implemented. This security program includes administrative, technical and physical safeguards to protect personal information from loss, misuse, unauthorized access, disclosure, alteration and destruction. Your organization should ensure that third-party organizations confirm (initially and at least annually) their understanding of, and agreement to, compliance with the entity's privacy policies and procedures related to the security of personal information. This means that their security principles, including user authentication, encryption of data and other areas, are the same caliber or stronger than your organization. GAPP provides many illustrations of good security practices to protect personal information.
Security for Privacy
The Security for privacy principle requires your organization to protect personal information against unauthorized access (both physical and logical). One of the criteria (8.2.1) requires that a security program has been developed, documented, approved and implemented. This security program includes administrative, technical and physical safeguards to protect personal information from loss, misuse, unauthorized access, disclosure, alteration and destruction. Your organization should ensure that third-party organizations confirm (initially and at least annually) their understanding of, and agreement to, compliance with the entity's privacy policies and procedures related to the security of personal information. This means that their security principles, including user authentication, encryption of data and other areas, are the same caliber or stronger than your organization. GAPP provides many illustrations of good security practices to protect personal information.
การแปล กรุณารอสักครู่..
