Use Case: Data Privacy Management

Alyne provides software for building and maintaining a compliant privacy organisation and enables you to easily assess and benchmark maturity against international data privacy baseline.

Introduction

The introduction of the General Data Protection Regulation (GDPR) in the EU and the Californian Consumer Privacy Act (CCPA) in California has raised awareness for the rights of consumers over their own data. This forces many organisations to change their way of thinking about personally identifiable information (PII). Many organisations address these complex international data privacy requirements using Alyne’s Software as a Service. We have identified some common challenges as well as some success factors along the way. 

Common Challenges

  • Not One Tick Box
    Some marketing and some organisations will have you believe compliance with a privacy law is all about one simple measure (that happens to be provided by their solution) such as the Cookie Banner on the web page. This drastically oversimplifies things and leaves organisations exposed.
     
  • Single Exercise
    Implementing a privacy framework is not a one-off exercise. Some may believe they can bring in a team of experts to “make them compliant” and then proceed as usual. That is not the case. Really implementing a privacy framework will likely change how you operate.

  • Get Scared by Fines
    Sadly, selling by fear is the ambulance chasing of the security and privacy industry. If you are only addressing GDPR or CCPA because of the potential fines, you are misguided and likely ignoring the huge reputational risk you are exposed to.


Success Factors

  • Consider Added Value
    If you consider good privacy practices added value for your customers and employees, you will be able to address your compliance with a business case rather than a cost of non-compliance. 

  • Integrate With Other Assurance
    Addressing privacy isolated from other assurance functions is highly inefficient. Consider synergies with information security, BCM, operational risk, audit, compliance and other functions.

  • Privacy by Design
    Trying to bend your organisation to be privacy aware and data austere after the fact is expensive and difficult. Make privacy part of your architecture and operations decisions.


For more information on CCPA and how it compares to GDPR, download our latest white paper
here.

ZurückWeiter
Karl Viertel

Related Posts

Real-Time Operational Risk Management in Financial Institutions (Part 1)

With this new article series, we explore and provide insights into Real-Time Operational Risk Management. In this first article, we deep dive into the many challenges of Operational Risk Management in many financial institutions and the goal of achieving an Integrated Risk Management approach that enables the organisation to make risk aware decisions that efficiently focus its resources and increase efficiency.
Weiterlesen

2021 Recap: Celebrating a Groundbreaking Year

2021 marks an incredible year for Alyne, now part of the Mitratech portfolio. The team invested a tremendous amount of effort and hard work to drive new growth, nurture opportunities, spark meaningful conversations, and incorporate powerful functionality into the platform. Take a look at our work, achievements and snapshots from the year.
Weiterlesen

Alyne's Assessments: Measuring Compliance Against Multiple Maturity Models

Assessments are an essential tool for measuring compliance. Recently within Alyne, we have improved our capabilities to cover Multiple Maturity Models, which enables users to configure more than one maturity model in their organisation and measure compliance in the levels of their choice. Using this feature, teams can create and customise levels to their Controls, assess compliance across multiple maturity models, create Reports and leverage this functionality in Alyne's Continuous Controls.
Weiterlesen