DIN Standards Committee Information Technology and IT Applications
Information security, cybersecurity and privacy protection - Guidelines on personally identifiable information deletion (ISO/IEC 27555:2021)
Abstract
The standard contains guidelines for developing and establishing policies and procedures for deletion of PII in organizations by specifying: - a harmonized terminology for PII deletion; - an approach for defining deletion rules in an efficient way; - a description of required documentation; and - a broad definition of roles, responsibilities and processes. This document is intended to be used by organizations where PII are stored or processed. This document does not address: - specific legal provision, as given by national law or specified in contracts; - specific deletion rules for particular clusters of PII as are to be defined by PII controllers for - processing PII; - deletion mechanisms; - reliability, security and suitability of deletion mechanisms; - specific techniques for de-identification of data.
Begin
2024-06-19
WI
JT013081
Planned document number
prEN ISO/IEC 27555
Responsible national committee
NA 043-04-13 GA - DIN/DKE Joint working committee Cybersecurity
Responsible european committee
CEN/CLC/JTC 13/WG 5 - Data Protection, Privacy and Identity Management
draft standard
Information security, cybersecurity and privacy protection - Guidelines on personally identifiable information deletion (ISO/IEC 27555:2021)
2024-11
Order from DIN Media