Valideur Logo
Back to Frameworks Library
Privacy Management

ISO/IEC 27701:2019

An extension to ISO/IEC 27001 and ISO/IEC 27002 for Privacy Information Management. It specifies requirements and provides guidance for establishing, implementing, maintaining and continually improving a Privacy Information Management System (PIMS) in the form of an extension to ISMS.

49 Controls Configured

Framework Requirements & Categories

Detailed breakdown of the highly precise, accurate control domains defined by ISO/IEC 27701:2019.

Context of the organization

Determining the organization's role as a PII controller or processor.

Leadership

Top management commitment regarding the PIMS.

Planning

Information security risk assessment must include risks related to processing PII.

Operation

Implementing the privacy risk treatment plan.