PRI-03.10 ยท Cease Processing, Storing and/or Sharing Personal Data (PD)

Control Description

Mechanisms exist to ensure the organization ceases collecting, receiving, processing, storing, transmitting, updating and/or sharing Personal Data (PD) upon receiving a data subject's consent revocation.

Control Question
Assessment question for control validation

Does the organization ensure it ceases collecting, receiving, processing, storing, transmitting, updating and/or sharing Personal Data (PD) upon receiving a data subject's consent revocation?

Control Weighting
6
Validation Cadence
Annual
NIST CSF Function
Protect
Supply Chain Risk Management (SCRM) Tiers
Applicable SCRM tier levels for this control
Tier 2 - Operational
Tier 3 - Tactical
Core Control Designations
Special designations and baseline inclusions
MAD: PRI-03.10
Additional Metadata
Applicability (Process):
x