prEN ISO/IEC 27555
Information security, cybersecurity and privacy protection - Guidelines on personally identifiable information deletion (ISO/IEC 27555:2021)
Draft Public enquiryProject stage codes
1. Decision on WI Proposal
2. Projektas
3. Viešoji apklausa
From 2024-11-22
till 2025-01-26
4. Closure of enquiry
5. Submission to Formal Vote
Organisation
CEN Europos standartizacijos komitetasICS
35.030 - IT SecurityTechnical Committee
TK 79 IT security techniquesForeignTC'S
CEN/CLC/JTC 13Number of comments
0Comment start date
2024-11-22Scope
The standard contains guidelines for developing and establishing policies and procedures for deletion of PII in organizations by specifying: — a harmonized terminology for PII deletion; — an approach for defining deletion rules in an efficient way; — a description of required documentation; and — a broad definition of roles, responsibilities and processes. This document is intended to be used by organizations where PII are stored or processed. This document does not address: — specific legal provision, as given by national law or specified in contracts; — specific deletion rules for particular clusters of PII as are to be defined by PII controllers for — processing PII; — deletion mechanisms; — reliability, security and suitability of deletion mechanisms; — specific techniques for de-identification of data.