Under active development Content is continuously updated and improved

PRI-03Choice & Consent

Weight: 7

>Control Description

Mechanisms exist to enable data subjects to authorize the collection, receiving, processing, storage, transmission, sharing, updating and/or disposal of their Personal Data (PD), where prior to collection the data subject is provided with: (1) Plain language to illustrate the potential data privacy risks of the authorization; (2) A means for users to decline the authorization; and (3) All necessary choice and consent-related criteria required by applicable statutory, regulatory and contractual obligations.

>Cross-Framework Mappings

NIST SP 800-53 r5

China Cybersecurity Law

APEC Privacy Framework

ISO 27002:2022

ISO 29100

OECD Privacy Principles

Data Privacy Management Principles

US Data Privacy Framework

Ask AI

Configure your API key to use AI features.