Organizations seeking to leverage data to drive growth and offer innovative products and services can face a unique set of privacy compliance challenges. The legal landscape is complex and dynamic, with a lack of clarity around how to meet certain legal obligations. In addition, many data processing activities remain unregulated. Organizations must manage privacy risks to address these uncertainties.
Would your organization like to use the NIST Privacy Framework, but believes it must focus on meeting compliance obligations? Regulatory crosswalks that map legal requirements to the Privacy Framework Core provide a starting point for integrating compliance and risk management efforts. NIST and a panel of legal experts discussed how organizations can use regulatory crosswalks to implement the framework to:
Create a foundational privacy program that can be tailored to different jurisdictions
Bridge the gap between compliance requirements and designing or deploying compliant products and services
Go beyond compliance and take a forward-looking risk management approach to privacy to drive trust, growth, and innovation
Dylan Gilbert, Privacy Policy Advisor, NIST (Moderator)
R. Jason Cronk, Privacy Engineer, Enterprivacy Consulting Group
Jeewon Serrato, Partner, BakerHostetler
Paulo Vidigal, Partner, Prado Vidigal Advogados
View the current regulatory crosswalks in the Privacy Framework Resource Repository: