Back to Frameworks Library
Privacy Management
ISO/IEC 27701:2019
An extension to ISO/IEC 27001 and ISO/IEC 27002 for Privacy Information Management. It specifies requirements and provides guidance for establishing, implementing, maintaining and continually improving a Privacy Information Management System (PIMS) in the form of an extension to ISMS.
49 Controls Configured
Framework Requirements & Categories
Detailed breakdown of the highly precise, accurate control domains defined by ISO/IEC 27701:2019.
Context of the organization
Determining the organization's role as a PII controller or processor.
Leadership
Top management commitment regarding the PIMS.
Planning
Information security risk assessment must include risks related to processing PII.
Operation
Implementing the privacy risk treatment plan.
