Standard Operating Procedures (SOPs) should be informed by the risk assessment (done previously) as well the organisation's or department's specific circumstances (e.g. operational or resource constraints, and other legal or regulatory requirements). This would impact how the identified data protection risks would be addressed and the implementation timeline.
Our approach
We Streamline Complex Personal Data Framework Processes
PRACTICAL
Document
Data Inventory Mapping
Data Flow Diagram
Data Flow Diagram
Risk Assessment
Collection, Use, Notification
Accuracy, Protection
Retention, Openness
Accuracy, Protection
Retention, Openness
Formulate SOPs
Collection, Use, Notification
Accuracy, Protection
Retention, Openness
Accuracy, Protection
Retention, Openness
Training
DPO
Senior Management
General Staff
Senior Management
General Staff