Data Strategy & Data Governance
Data Strategy and Data Governance refers to the development and implementation of strategies for effective data management within an organization.
- Knowledge domains
- /Thematic areas
- /Segments
- /Building blocks
Risk, Compliance & Privacy
This segment covers requirements and risks that must be considered when working with data. It includes regulatory constraints, privacy principles, classification of sensitive data, requirements for access and traceability, and risk assessment related to processing and sharing. The focus is on classifying and governing requirements, independent of specific organizational roles or technical tooling.
Compliance Audits
Review of adherence to regulations and standards.
Compliance Management
Compliance management encompasses processes for adhering to legal regulations and internal standards.
Data Classification
Data classification refers to the systematic categorization of data to enhance its use, security, and management.
Data Classification Process
The data classification process is a structured approach to categorizing data based on its sensitivity and value.
Data Protection Impact Assessment (DPIA)
The Data Protection Impact Assessment (DPIA) is an essential process for evaluating the impacts of data processing activities on individuals' privacy.
Privacy Impact Assessment (PIA)
A method for assessing privacy impacts.
Risk Management
Risk Management helps systematically identify and assess risks.
Threat Modeling
A structured method for identifying and assessing potential threats and vulnerabilities in a system.
Access Control
Access control involves security mechanisms to regulate and monitor access to systems and data.
Auditability
Auditability refers to the ability to make processes and decisions within systems transparent and traceable.
Data Privacy
Data privacy deals with the protection of personal data.
Data Retention
Data retention refers to the strategies and measures for archiving data.
Data Sovereignty
Data sovereignty refers to the control over data with respect to its storage, access, and use.
Privacy by Design
A concept that integrates privacy into the development process.
OneTrust
OneTrust is a platform for managing privacy compliance and risk management.
Open Policy Agent (OPA)
An open-source tool for managing permissions and policies across various applications.