Back

Remove certification marks of privacy programs the organization is no longer a member of from the privacy policy.


CONTROL ID
12368
CONTROL TYPE
Establish/Maintain Documentation
CLASSIFICATION
Corrective

SUPPORTING AND SUPPORTED CONTROLS




This Control directly supports the implied Control(s):
  • Define what is included in the privacy policy., CC ID: 00404

There are no implementation support Controls.


SELECTED AUTHORITY DOCUMENTS COMPLIED WITH




  • When an organization leaves the EU-U.S. DPF for any reason, it must remove all statements implying that the organization continues to participate in the EU-U.S. DPF or is entitled to the benefits of the EUU.S. DPF. The EU-U.S. DPF certification mark, if used, must also be removed. Any misrepresentat… (III.6.h., EU-U.S. DATA PRIVACY FRAMEWORK PRINCIPLES)
  • When an organization leaves the Privacy Shield for any reason, it must remove all statements implying that the organization continues to participate in the Privacy Shield or is entitled to the benefits of the Privacy Shield. The EU-U.S. Privacy Shield certification mark, if used, must also be remove… (ยง III.6.h., EU-U.S. Privacy Shield Framework Principles)
  • When an organization leaves the Swiss-U.S. DPF for any reason, it must remove all statements implying that the organization continues to participate in the Swiss-U.S. DPF or is entitled to the benefits of the Swiss-U.S. DPF. The Swiss-U.S. DPF certification mark, if used, must also be removed. Any m… (iii.6.h., SWISS-U.S. DATA PRIVACY FRAMEWORK PRINCIPLES)
  • When an organization leaves the EU-U.S. DPF for any reason, it must remove all statements implying that the organization continues to participate in the EU-U.S. DPF or is entitled to the benefits of the EUU.S. DPF. The EU-U.S. DPF certification mark, if used, must also be removed. Any misrepresentat… (III.6.h., UK EXTENSION TO THE EU-U.S. DATA PRIVACY FRAMEWORK PRINCIPLES)