Glossary of Compliance
Compliance Glossary
Our list of curated compliance glossary offers everything you to know about compliance in one place.
Privacy
Privacy is one of the five trust service criteria of SOC 2. It is information an entity collects, uses, retains, discloses, and disposes to meet its objectives.
The privacy principle aims to service organizations who handle sensitive personal information do so in a responsible and trustworthy manner. They should have appropriate controls in place to protect the privacy of individuals. This principle guides organizations to handle privacy based on the following:
– Notice and communication of objectives
– Choice and consent
– Collection
– Use, retention, and disposal
– Access
– Disclosure and notification
– Quality
– Monitoring and enforcement
Additional reading
Everything you don’t see in GRC reports: A look back at Humans of GRC series
NIST SP 800-171 Compliance: Guidelines and Requirements
ISO 27001 Requirements – A Comprehensive List [+Free Template]
Sprinto: Your growth superpower
Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.