Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » ISO 27001 » Personal Data Filing System

Personal Data Filing System

A personal Data Filing System is any structured set of personal information which are accessible as per specific criteria, whether decentralized, centralized, or dispersed on a functional or geographical basis.

Additional reading

GDPR vs ISO 27001: What’s the Difference?

TL,DR: GDPR is an EU privacy law; ISO 27001 is a voluntary ISMS standard. ISO 27001 supports security controls but does not cover all GDPR privacy obligations. The article compares principles, legal status, data subject rights, fines, and ISO 27701 overlap. If you think, “I am ISO 27001 compliant. So, I am almost GDPR compliant.”…

Enterprise GRC Explained: Benefits, Challenges, and How to Get It Right

TL,DR: Enterprise GRC connects governance, risk, and compliance across the whole organization. It helps leaders spot risks earlier, make better decisions, and reduce disconnected control work. The article covers adoption barriers, data silos, regulatory complexity, and enterprise-wide GRC ownership. Keeping a growing business on track is about much more than hitting targets. It’s about making…

HIPAA Compliant Text Messaging Rules and Safeguards

TL,DR: HIPAA-compliant text messaging requires sufficient technical safeguards including end-to-end encryption, access controls, and audit trails. Standard SMS does not meet HIPAA standards because messages lack adequate encryption Messaging is compliant when patients are informed of texting risks, consent is obtained, end-to-end encryption is implemented, access controls are enforced, and complete audit trails are maintained…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.