Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » CCPA » Right of Data Portability

Right of Data Portability

The right of data portability is a privacy right that allows individuals to request their personal data from a service provider in a structured, easily understood, and machine-readable format. With this right, customers can transfer their data to another service provider without hindrance.

Under CCPA (California Consumer Privacy Act), the right of data portability falls under the broader scope of Right of Access to one’s personal information collected by a business. 

The right of data portability applies to the personal information that a business has collected from the consumer over the 12 months preceding the request.

The right can be exercised on the part of the customer by raising a request by submitting an online form, calling a toll-free number, or sending an e-mail to the business. Within 10 days of receiving the request, the business needs to confirm its receipt and provide the information within 45 days.

If the same has not been received within that said period, then the business will extend this period by another 45 days; however, for this, they must notify the customer and state the reason for such a delay.

Failure to comply with a valid data portability request may yield severe penalties under the CCPA, including fines of up to $7,500 per violation if found intentional. Beyond that, it would also severely dent a business’s reputation and chances of consumers trusting their business and subsequently facing lawsuits.

Additional reading

iso 27001 2022

ISO 27001:2022 Annex A: The New Security Controls

The world of information security never stands still, nor does ISO/IEC 27001. On October 25, 2022, this crucial standard for Information Security Management Systems (ISMS) got a major overhaul.  ISO 27001, an international compliance standard that helps organizations manage their information security management systems (ISMS) undergoes a systematic review every five years.  The update to…
Cyber Resilience

Building Cyber Resilience: How To Be Stoic As A Business?

In 2023, over 343,338,964 people fell victim to a cyber attack, and the number does not seem to stop growing. While traditional cyber security measures focus on preventing these attacks, perhaps even getting the numbers down, the concept of cyber resilience takes it a step further.  It’s not about how you can defend yourself against…
Feature Image_Cyber risk quanitfication

Risk Quantification: Understanding Key Elements, Models, & Challenges 

Cloud-hosted companies are facing a number of challenges – increasing cloud adoption, digital disruption, increased regulatory practices, broken or mismanaged controls, and more.  All these are adding a list of high risk items, but realistically speaking, it is not possible to address it all and if everything is important, then nothing is important. This has…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.