What is breach response and reporting?
Breach response is the structured handling of a privacy or security incident – discovery, evaluation, communication, recording and remediation. Tight regulator timeframes apply.
What is GPDP? PrivIQ’s General Personal Data Protection framework
GPDP is PrivIQ’s baseline privacy framework for organisations in jurisdictions without dedicated privacy regulation, or where a baseline personal data protection programme is required as a common floor across multiple jurisdictions.
What is USCP? USA Consumer Protection privacy framework
USCP is PrivIQ’s framework for organisations that need practical governance over consumer data handling, notices, rights, third-party risk and evidence of responsible practices in the USA’s fragmented state-by-state landscape.
What is DPDx? Data Protection Dynamics framework
DPDx is a USA-focused privacy and data protection framework delivered through a specific PrivIQ partner, designed for organisations needing practical, evidenced privacy practices in the US market.
What is privacy compliance software?
Privacy compliance software is a structured platform for managing privacy obligations across regulations – data inventories, ROPA, DSARs, breach response, processor oversight, consent and audit-grade evidence in one place.
What is a DPIA? A guide to Data Protection Impact Assessments
A Data Protection Impact Assessment is a structured review of a processing activity that identifies privacy risks to individuals and decides how to mitigate them. GDPR requires one for high-risk processing – including most uses of AI on personal data.
What is a TIA? A guide to Transfer Impact Assessments
A Transfer Impact Assessment evaluates whether personal data transferred outside the originating jurisdiction is afforded essentially equivalent protection. Required after Schrems II for most transfers from the EEA.
What is a ROPA? Records of Processing Activities explained
A Record of Processing Activities is the structured inventory of how an organisation processes personal data. Required by GDPR Article 30, it underpins almost every other privacy activity.
What is DSAR management? A guide to handling data subject requests
DSAR management is the structured workflow for receiving, validating, fulfilling and recording data subject requests – access, deletion, portability, correction, objection and similar rights.
Privacy compliance software vs. spreadsheets – when to switch
Most privacy programmes start in spreadsheets. They rarely scale, and they almost never produce audit-grade evidence on demand. Here’s how to know when it’s time to move on.