Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » GDPR » Data Subject

Data Subject

Data Subject is an individual that can be identified with personal information indicators. Personal information identifiers include but may not be limited to their name, address, phone number, email, location data or other factors that specify a person’s physical, physiological, genetic, mental, economical, cultural or social identity.

Additional reading

Why Unifying Enterprise Commitments Is Now A Necessity For Trust Building

Here’s a scenario that plays out almost every day.  Shortly after your sales team closes an enterprise deal, legal signs the customer contract. But buried in the intensive Master Service Agreement (MSA) are specific clauses on data handling, incident response, subprocessor restrictions, and recovery SLAs. Legal files the document as per their standard procedure, and…

Corporate Compliance Program: Framework and Implementation

TLDR If you’re considering building a corporate compliance program, it’s likely driven by a few key factors. Perhaps a prospect has requested proof of your company’s ethics and security standards. Maybe regulatory requirements apply based on the services you provide, or you simply want to elevate your organization’s culture, ethics, and security practices. Whatever the…

Data Retention Policy for ISO 27001: A Simple Guide (+ Template)

TL,DR: An ISO 27001 data retention policy defines what data to keep, where, why, and for how long. It should classify records, assign retention periods, define owners, and document secure disposal methods. The article links retention rules to ISMS scope, legal duties, privacy risk, and audit evidence. Imagine a customer requests a copy of their…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.