Privacy Engineering Framework
August 2014Topics: Information Privacy, Information Security Risk Management, Systems Engineering (General)
To adequately address privacy risks, systems that manage personally identifiable information (PII) must behave in a privacy-sensitive manner. Systems engineering processes are a largely untapped opportunity to embed privacy requirements into organizational activities in a way that provides major impact and will proactively address privacy risks. Privacy by Design (PbD) advances the view that privacy cannot be assured solely by compliance with regulatory frameworks; rather, privacy assurance must become an organization's default mode of operation. PbD applies to IT, accountable business practices, and physical design. This presentation discusses an engineering framework for building PbD into government systems.