Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » GDPR » Data Retention

Data Retention

The GDPR Data Retention rules says that any personal data collected or processed must be retained solely for the duration necessary to accomplish the purpose for which the information was initially gathered. However, it is important to note that there are exceptions, such as scientific or historical research.

Additional reading

ISO 27002 controls

List of ISO 27002 2022 Controls : What changed in 2022

Are you tired of constantly worrying about your organization’s security? Do you want to ensure that your company’s sensitive data is protected at all times? If so, then this guide on ISO 27002 controls is for you. In this article, you will learn what ISO 27002 is, the changes implemented since the update last year,…
HIPAA data retention

HIPAA Data Retention Requirements: State-Wise Policies

Health care services that are privy to protected health information (PHI) and facility policies are legally bound to retain it in the original format throughout its lifecycle. HIPAA offers guidelines for retaining it but is often confusing and difficult to decipher. Nevertheless, HIPAA data retention laws are not to be neglected as non compliance can…
NIST vs ISO 27001

NIST vs ISO 27001 Compliance: What’s the Difference?

NIST and ISO 27001 are two of the most sought after compliance certifications in the market today. While ISO/IEC 27001 takes a comprehensive approach to information security management, NIST sets the standards for information security, develops new technologies, and provides metrics to drive innovation and industrial competitiveness. So which among these standards suits you best?…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.