Show Filters

Top Results

Data Privacy Program Development

Regulatory Compliance

  • Evaluated client’s data privacy practices against international and national control standards, including ISC, NIST, and GDPR

Detailed Security Guidance

  • Created improved documentation for security programs and requirements

Talent Upskilling

  • Audience-specific training used to inform employees of new policies, programs, tools, and responsibilities

Challenge

A specialized firm serving regulated utilities operates in locations subject to stringent privacy legislation (United States and Europe). The company was forced to revamp its data privacy program in its information security program to account for privacy requirements within its regulatory scope. Previous data privacy program documentation only contained high-level guidance and needed a refresh.

Process

  • Interviewed key stakeholders to understand what personally identifiable information was in scope 
  • Evaluated client’s current privacy practices against best practices and international and national control standards (e.g., ISO, NIST, GDPR) 
  • Conducted workshops with key stakeholders to validate privacy controls that the organization needs to perform in order to meet regulatory requirements 
  • Updated the data privacy program and cyber incident response plan to reflect necessary privacy controls 
  • Backlogged aspirational privacy requirements to be incorporated into future iterations of the data privacy program 
  • Developed audience-specific awareness training to inform employees of new policies, programs, and responsibilities 
  • Developed executive communications to inform leadership of changes to the data privacy program 

Result

  • An updated enterprise privacy standard and cyber incident response plan aligned with the organization’s objectives
  • A program implementation plan that understood the impacts of program implementation

Related Insights

Let’s Work Together

We don’t solve problems with canned methodologies. We help you solve the right problem in the right way. Our experience ensures that the solution works for you.