{"id":4069,"date":"2020-02-29T15:29:06","date_gmt":"2020-02-29T20:29:06","guid":{"rendered":"http:\/\/www.dcamportal.org\/?p=4069"},"modified":"2020-03-12T15:35:36","modified_gmt":"2020-03-12T19:35:36","slug":"gdpr-opportunities-for-best-practice","status":"publish","type":"post","link":"https:\/\/staging.dcamportal.org\/fr_ca\/gdpr-opportunities-for-best-practice\/","title":{"rendered":"Opportunit\u00e9s de bonnes pratiques dans le cadre du GDPR"},"content":{"rendered":"<h2 class=\"wp-block-heading\">Design Requirements, Processes, &amp; Tools<\/h2>\n\n\n\n<p>As presented in the <em><a href=\"http:\/\/www.dcamportal.org\/gdpr-general-data-protection-regulation-the-role-of-data-management\/\" target=\"_blank\" rel=\"noreferrer noopener\" aria-label=\"GDPR (General Data Protection Regulation): The Role of Data Management (opens in a new tab)\">GDPR (General Data Protection Regulation): The Role of Data Management<\/a>,<\/em> the <span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture cmtt_7.0 Data Control Environment cmtt_2.0 Data Management Program &amp; Funding Model cmtt_6.0 Data Governance cmtt_5.0 Data Quality Management cmtt_4.0 Data &amp; Technology Architecture cmtt_1.0 Data Management Strategy &amp; Business Case\"  title=\"Glossary: Data Management Capability Assessment Model\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Management Capability Assessment Model (DCAM)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; An industry-standard framework for the practice of data management.&nbsp; It addresses the capabilities needed to position the business case, implement the operating model, ensure funding and(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-management-capability-assessment-model\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>DCAM<\/span>&trade; Framework provides the Data Management foundation to support compliance with the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span>. However, the Work <span class=\"glossaryLink cmtt_1.0 Data Management Strategy &amp; Business Case\"  title=\"Glossary: Enterprise\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Enterprise&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; (In the Context of Data Management) The level of the organization that performs organization-wide business and\/or control function activities. &lt;\/div&gt;&lt;div class=cmtt_synonyms_wrapper&gt;&lt;div class=cmtt_synonyms_title&gt;Synonyms: &lt;\/div&gt;&lt;div class=cmtt_synonyms&gt;Group&lt;\/div&gt;&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/enterprise\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Group<\/span> identified a set of additional focus areas where ongoing collaboration and knowledge share could produce further valuable best practice standards. This post presents a collection of prioritized proposed opportunities for best practice.<\/p>\n\n\n\n<p>In the absence of these best-practice standards, EDM Council recommends that organizations should independently define their approach to each of these focus areas.&nbsp; The list of Best Practice Opportunities is a guide for an organization to ensure its Data Management processes and tools consider an approach to these focus areas.<\/p>\n\n\n\n<p>The EDM Council maintains an ongoing effort to collect best practice executions from member organizations. Members should share their proposed best practice or raise other issues in the comments section at the end of this post.<\/p>\n\n\n\n<p>The table below identifies the Focus Areas, provides a Description of the issue, and lists the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> Components to which the issue is aligned. The listing is in ranked order (High, Medium, and Low) per the collective opinion of the Work <span class=\"glossaryLink cmtt_1.0 Data Management Strategy &amp; Business Case\"  title=\"Glossary: Enterprise\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Enterprise&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; (In the Context of Data Management) The level of the organization that performs organization-wide business and\/or control function activities. &lt;\/div&gt;&lt;div class=cmtt_synonyms_wrapper&gt;&lt;div class=cmtt_synonyms_title&gt;Synonyms: &lt;\/div&gt;&lt;div class=cmtt_synonyms&gt;Group&lt;\/div&gt;&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/enterprise\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Group<\/span> membership.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Focus Areas for Best Practice<\/h2>\n\n\n\n<table class=\"wp-block-advgb-table alignleft advgb-table-frontend\"><thead><tr><td style=\"background-color:#005494;color:#ffffff;text-align:left;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>#<\/strong><\/td><td style=\"background-color:#005494;color:#ffffff;text-align:left;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Focus Area<\/strong><\/td><td style=\"background-color:#005494;color:#ffffff;text-align:left;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Description<br> <strong>GDPR<\/strong> Component Alignment<\/strong><\/td><\/tr><\/thead><tbody><tr><td style=\"text-align:center;vertical-align:middle;background-color:#e78747;color:#ffffff;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\" colspan=\"3\"><strong>High Priority<\/strong><\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>1<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Business Logic<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define proposed <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Standard\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Standard&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A rule or set of rules that defines expected actions for achieving compliance with associated policies. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/standard\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>standard<\/span> business rules or logic that are required to define the scope and parameters of the following components to be considered by an organization. The actual interpretation of the requirements and resulting logic may vary between organizations.<br>&#9679; Transparency and Information Rights<br>&#9679; Purpose Limitation &amp; Data Minimization<br>&#9679; <span class=\"glossaryLink cmtt_5.0 Data Quality Management\" title=\"Glossary: Data Quality\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Quality&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; 1) A measurement of qualitative and quantitative conditions that determine whether the data is fit-for-purpose in a business process or operation.2) The function that ensures the data being(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-quality\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Data Quality<\/span> and Proportionality<br>&#9679; Legal Basis for Processing <span class=\"glossaryLink cmtt_6.0 Data Governance\" title=\"Glossary: Personal Data\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Personal Data&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Any information relating to a data subject. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/personal-data\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Personal Data<\/span><br>&#9679; Sensitive Data (Special Categories of Data)<br>&#9679; Controller &ndash; Processor Relationship<br>&#9679; International Data Transfers (Cross Border)<br>&#9679; Security of Processing<br>&#9679; Breach Notifications to Data Subjects<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>2<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Data Elements (DEs) in scope &ndash; Additions<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to identify the proposed execution processes data sets. The processes to manage the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> component requirements necessitates the creation of new data elements related to the activities in the <span class=\"glossaryLink cmtt_4.0 Data &amp; Technology Architecture\"  title=\"Glossary: Process\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Process&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A series of steps that when executed in order achieve the desired outcome. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/process\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>process<\/span> (e.g., <span class=\"glossaryLink cmtt_6.0 Data Governance\" title=\"Glossary: Data Subject\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Subject&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; An identified or identifiable natural person &ndash; i.e., a person who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, identification number, etc. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-subject\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Data Subject<\/span> Request Flag, Request Date, Request Completion, Completion Date). Actual execution and data required may vary between organizations.<br>&#9679; Transparency and Information Rights<br>&#9679; Right of Access<br>&#9679; Rectification, Erasure and Restriction of Processing<br>&#9679; <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Profiling\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Profiling&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Any form of automated processing of personal data consisting of the use of personal data to evaluate certain personal aspects relating to an individual. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/profiling\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Profiling<\/span> &amp; Automated Individual Decisions<br>&#9679; Data Portability<br>&#9679; Purpose Limitation &amp; Data Minimization<br>&#9679; <span class=\"glossaryLink cmtt_5.0 Data Quality Management\" title=\"Glossary: Data Quality\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Quality&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; 1) A measurement of qualitative and quantitative conditions that determine whether the data is fit-for-purpose in a business process or operation.2) The function that ensures the data being(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-quality\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Data Quality<\/span> &amp; Proportionality<br>&#9679; Legal Basis for Processing <span class=\"glossaryLink cmtt_6.0 Data Governance\" title=\"Glossary: Personal Data\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Personal Data&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Any information relating to a data subject. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/personal-data\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Personal Data<\/span><br>&#9679; Sensitive Data (Special Categories of Data)<br>&#9679; Controller &ndash; Processor Relationship<br>&#9679; International Data Transfers<br>&#9679; Security of Processing<br>&#9679; Breach Notifications to Data Subjects<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>3<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Design Guidelines: <span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture\"  title=\"Glossary: Data Flow\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Flow&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A movement of data from one point to another, without involving any intermediaries at a specific level of granularity, to transport data. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-flow\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Data Flow<\/span> and Lineage<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define proposed design guidelines for the appropriate rigor of <span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture\"  title=\"Glossary: Data Flow\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Flow&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A movement of data from one point to another, without involving any intermediaries at a specific level of granularity, to transport data. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-flow\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Data Flow<\/span> or Lineage to execute the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> component requirements. The premise is that <span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture\"  title=\"Glossary: Data Flow\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Flow&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A movement of data from one point to another, without involving any intermediaries at a specific level of granularity, to transport data. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-flow\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Data Flow<\/span> is a lighter rigor subset of the greater rigor included in <span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture\" title=\"Glossary: Data Lineage\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Lineage&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Documentation of the sequence of movement and\/or transformation of data as it flows between the consumer and the source(s). &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-lineage\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Data Lineage<\/span>. The proposal is to align the appropriate required rigor to the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> component requirements.<br>&#9679; Transparency and Information Rights<br>&#9679; Rectification, Erasure, and Restriction of Processing<br>&#9679; <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Profiling\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Profiling&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Any form of automated processing of personal data consisting of the use of personal data to evaluate certain personal aspects relating to an individual. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/profiling\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Profiling<\/span> &amp; Automated Individual Decisions<br>&#9679; Data Portability<br>&#9679; Purpose Limitation &amp; Data minimization<br>&#9679; <span class=\"glossaryLink cmtt_5.0 Data Quality Management\" title=\"Glossary: Data Quality\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Quality&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; 1) A measurement of qualitative and quantitative conditions that determine whether the data is fit-for-purpose in a business process or operation.2) The function that ensures the data being(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-quality\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Data Quality<\/span> &amp; Proportionality<br>&#9679; Legal Basis for Processing <span class=\"glossaryLink cmtt_6.0 Data Governance\" title=\"Glossary: Personal Data\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Personal Data&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Any information relating to a data subject. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/personal-data\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Personal Data<\/span><br>&#9679; Sensitive Data (Special Categories of Data)<br>&#9679; Controller &ndash; Processor Relationship<br>&#9679; International Data Transfers<br>&#9679; Security of Processing<br>&#9679; Breach Notifications to Data Subjects<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>4<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Design Guidelines: Legal Basis for Processing<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define proposed design guidelines for identifying a <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Standard\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Standard&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A rule or set of rules that defines expected actions for achieving compliance with associated policies. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/standard\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>standard<\/span> set of the legal basis for processing. The basis may vary across the range of products of an organization and specific business processes of an organization.<br>&#9679; Legal Basis for Processing <span class=\"glossaryLink cmtt_6.0 Data Governance\" title=\"Glossary: Personal Data\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Personal Data&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Any information relating to a data subject. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/personal-data\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Personal Data<\/span><\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>5<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong><span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture\"  title=\"Glossary: Metadata\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Metadata&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Data that serves to provide additional information or context about other data. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/metadata\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Metadata<\/span> <span class=\"glossaryLink cmtt_1.0 Data Management Strategy &amp; Business Case\"  title=\"Glossary: Model\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Model&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; An executable representation of an idea or theory. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/model\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Model<\/span> Additions<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to identify a proposed <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Standard\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Standard&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A rule or set of rules that defines expected actions for achieving compliance with associated policies. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/standard\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>standard<\/span> set of new <span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture\"  title=\"Glossary: Metadata\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Metadata&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Data that serves to provide additional information or context about other data. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/metadata\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>metadata<\/span> fields that are needed to execute the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> component requirements (e.g., In-Scope for X Flag, Erasure Flag, Automated Decision Flag, Special Categories of Data).<br>&#9679; Transparency and Information Rights<br>&#9679; Rectification, Erasure, and Restriction of Processing<br>&#9679; <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Profiling\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Profiling&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Any form of automated processing of personal data consisting of the use of personal data to evaluate certain personal aspects relating to an individual. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/profiling\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Profiling<\/span> &amp; Automated Individual Decisions<br>&#9679; Data Portability<br>&#9679; Purpose Limitation &amp; Data minimization<br>&#9679; <span class=\"glossaryLink cmtt_5.0 Data Quality Management\" title=\"Glossary: Data Quality\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Quality&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; 1) A measurement of qualitative and quantitative conditions that determine whether the data is fit-for-purpose in a business process or operation.2) The function that ensures the data being(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-quality\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Data Quality<\/span> &amp; Proportionality<br>&#9679; Sensitive Data (Special Categories of Data)<br>&#9679; Controller &ndash; Processor Relationship<br>&#9679; International Data Transfers<br>&#9679; Security of Processing<br>&#9679; Breach Notifications to Data Subjects<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>6<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong><span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Policy\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Policy&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; High level directive that expresses goals and represents management expectations for legal, regulatory and\/or organizational requirements. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/policy\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Policy<\/span> Implications: Data Retention <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Policy\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Policy&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; High level directive that expresses goals and represents management expectations for legal, regulatory and\/or organizational requirements. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/policy\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Policy<\/span><\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to propose <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Standard\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Standard&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A rule or set of rules that defines expected actions for achieving compliance with associated policies. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/standard\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>standard<\/span> language required in the <span class=\"glossaryLink cmtt_1.0 Data Management Strategy &amp; Business Case\"  title=\"Glossary: Enterprise\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Enterprise&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; (In the Context of Data Management) The level of the organization that performs organization-wide business and\/or control function activities. &lt;\/div&gt;&lt;div class=cmtt_synonyms_wrapper&gt;&lt;div class=cmtt_synonyms_title&gt;Synonyms: &lt;\/div&gt;&lt;div class=cmtt_synonyms&gt;Group&lt;\/div&gt;&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/enterprise\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Enterprise<\/span> Data Management <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Policy\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Policy&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; High level directive that expresses goals and represents management expectations for legal, regulatory and\/or organizational requirements. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/policy\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Policy<\/span> related to achieving the execution of the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> related Data Retention policies.<br>&#9679; Rectification, Erasure, and Restriction of Processing<br>&#9679; Purpose Limitation &amp; Data minimization<br>&#9679; <span class=\"glossaryLink cmtt_5.0 Data Quality Management\" title=\"Glossary: Data Quality\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Quality&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; 1) A measurement of qualitative and quantitative conditions that determine whether the data is fit-for-purpose in a business process or operation.2) The function that ensures the data being(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-quality\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Data Quality<\/span> &amp; Proportionality<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>7<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong><span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Policy\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Policy&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; High level directive that expresses goals and represents management expectations for legal, regulatory and\/or organizational requirements. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/policy\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Policy<\/span> Implications: Ecosystem<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to propose <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Standard\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Standard&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A rule or set of rules that defines expected actions for achieving compliance with associated policies. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/standard\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>standard<\/span> language required in the <span class=\"glossaryLink cmtt_1.0 Data Management Strategy &amp; Business Case\"  title=\"Glossary: Enterprise\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Enterprise&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; (In the Context of Data Management) The level of the organization that performs organization-wide business and\/or control function activities. &lt;\/div&gt;&lt;div class=cmtt_synonyms_wrapper&gt;&lt;div class=cmtt_synonyms_title&gt;Synonyms: &lt;\/div&gt;&lt;div class=cmtt_synonyms&gt;Group&lt;\/div&gt;&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/enterprise\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Enterprise<\/span> Data Management <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Policy\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Policy&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; High level directive that expresses goals and represents management expectations for legal, regulatory and\/or organizational requirements. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/policy\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Policy<\/span> to establish accountabilities and collaboration across the in-scope data ecosystem of the organization.<br>&#9679; Transparency and Information Rights<br>&#9679; Rectification, Erasure, and Restriction of Processing<br>&#9679; <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Profiling\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Profiling&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Any form of automated processing of personal data consisting of the use of personal data to evaluate certain personal aspects relating to an individual. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/profiling\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Profiling<\/span> &amp; Automated Individual Decisions<br>&#9679; Purpose Limitation &amp; Data minimization<br>&#9679; <span class=\"glossaryLink cmtt_5.0 Data Quality Management\" title=\"Glossary: Data Quality\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Quality&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; 1) A measurement of qualitative and quantitative conditions that determine whether the data is fit-for-purpose in a business process or operation.2) The function that ensures the data being(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-quality\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Data Quality<\/span> &amp; Proportionality<br>&#9679; Sensitive Data (Special Categories of Data)<br>&#9679; Controller &ndash; Processor Relationship<br>&#9679; International Data Transfers<br>&#9679; Security of Processing<br>&#9679; Breach Notifications to Data Subjects<\/td><\/tr><tr><td style=\"text-align:center;vertical-align:middle;background-color:#e78747;color:#ffffff;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\" colspan=\"3\"><strong>Medium Priority<\/strong><\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>8<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Data Elements (DEs) in Scope &ndash; Existing<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to identify the possible <span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture\"  title=\"Glossary: Data Set\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Set&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Any organized collection of data made available for consumption. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-set\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>data set<\/span> in scope as defined by the specific criteria in the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> component requirements. Not all identified data exist or have the same naming in every organization.<br>&#9679; Transparency and Information Rights<br>&#9679; Rectification, Erasure, and Restriction of Processing<br>&#9679; Data Portability<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>9<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Design Guidelines: 3rd Party Provisioning<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define proposed design guidelines for the data management processes related to provisioning data to 3rd parties while executing the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> component requirements. This objective includes incorporating the actual 3rd party provisioning <span class=\"glossaryLink cmtt_4.0 Data &amp; Technology Architecture\"  title=\"Glossary: Process\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Process&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A series of steps that when executed in order achieve the desired outcome. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/process\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>process<\/span> into the various products and business processes of the organization.<br>&#9679; Data Portability<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>10<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Design Guidelines: Data Erasure<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define proposed technical design guidelines for data erasure (incorporating the invocation of the Right to be Forgotten). Complicating the objective is the apparent tension between minimum records\/data retention requirements not defined by <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> and the Right to be Forgotten in <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span>. How can you do both?<br>The best practice recommendation for this needs to address this tension to successfully meet the criteria. A best practice is to allow for a <span class=\"glossaryLink cmtt_6.0 Data Governance\" title=\"Glossary: Data Subject\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Subject&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; An identified or identifiable natural person &ndash; i.e., a person who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, identification number, etc. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-subject\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">data subject<\/span> to reinstate their relationship with an organization.<br>&#9679; Rectification, Erasure, and Restriction of Processing<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>11<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Design Guidelines: Data Provisioning Format<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define proposed design guidelines for the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Standard\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Standard&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A rule or set of rules that defines expected actions for achieving compliance with associated policies. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/standard\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>standard<\/span> format for provisioning data as defined in the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> component requirements.<br>&#9679; Right of Access<br>&#9679; Data Portability<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>12<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Education Content Outline<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to propose a curriculum outline for the data management related training required for <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> compliance. Incorporating this curriculum into an overall <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> compliance training curriculum maintained by the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> accountable control <span class=\"glossaryLink cmtt_1.0 Data Management Strategy &amp; Business Case\"  title=\"Glossary: Function\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Function&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; (In the context of Data Management) An operational function of the organization (e.g., data quality function). &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/function\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>function<\/span> of the organization.<br>&#9679; Training Program<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>13<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong><span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Policy\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Policy&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; High level directive that expresses goals and represents management expectations for legal, regulatory and\/or organizational requirements. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/policy\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Policy<\/span> Implications: Data Management <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Policy\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Policy&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; High level directive that expresses goals and represents management expectations for legal, regulatory and\/or organizational requirements. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/policy\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Policy<\/span><\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to propose <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Standard\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Standard&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A rule or set of rules that defines expected actions for achieving compliance with associated policies. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/standard\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>standard<\/span> statements required in the <span class=\"glossaryLink cmtt_1.0 Data Management Strategy &amp; Business Case\"  title=\"Glossary: Enterprise\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Enterprise&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; (In the Context of Data Management) The level of the organization that performs organization-wide business and\/or control function activities. &lt;\/div&gt;&lt;div class=cmtt_synonyms_wrapper&gt;&lt;div class=cmtt_synonyms_title&gt;Synonyms: &lt;\/div&gt;&lt;div class=cmtt_synonyms&gt;Group&lt;\/div&gt;&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/enterprise\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Enterprise<\/span> Data Management <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Policy\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Policy&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; High level directive that expresses goals and represents management expectations for legal, regulatory and\/or organizational requirements. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/policy\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Policy<\/span> related to <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> component requirements compliance. The <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Standard\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Standard&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A rule or set of rules that defines expected actions for achieving compliance with associated policies. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/standard\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>standard<\/span> statements relate to the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Policy\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Policy&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; High level directive that expresses goals and represents management expectations for legal, regulatory and\/or organizational requirements. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/policy\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>policy<\/span> published by the control <span class=\"glossaryLink cmtt_1.0 Data Management Strategy &amp; Business Case\"  title=\"Glossary: Function\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Function&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; (In the context of Data Management) An operational function of the organization (e.g., data quality function). &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/function\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>function<\/span> accountable for <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> compliance.<br>&#9679; Transparency and Information Rights<br>&#9679; Controller &ndash; Processor Relationship<br>&#9679; International Data Transfers<br>&#9679; Security of Processing<br>&#9679; Global Requirements<\/td><\/tr><tr><td style=\"vertical-align:middle;text-align:center;background-color:#e78747;color:#ffffff;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\" colspan=\"3\"><strong>Low Priority<\/strong><\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>14<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Design Guidelines: Technical Access Controls<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define proposed technical design guidelines to take technical and organizational measures to secure the data.<br>A best practice approach is for data to be encrypted, tokenized, anonymized, or pseudonymized at rest, in transit, and memory. Achieving the objective is not possible with <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Policy\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Policy&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; High level directive that expresses goals and represents management expectations for legal, regulatory and\/or organizational requirements. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/policy\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>policy<\/span> alone, and it requires a technological solution to manage access to the data. The underlying <span class=\"glossaryLink cmtt_4.0 Data &amp; Technology Architecture\"  title=\"Glossary: Process\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Process&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A series of steps that when executed in order achieve the desired outcome. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/process\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>process<\/span> determines who is allowed to view the data and for what purposes along with the granting or blocking of data access.<br>&#9679; Security of Processing<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>15<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Design Guidelines: Human Intervention<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define proposed design guidelines for the appropriate data management requirements for executing the human intervention in automated decisioning requested by the <span class=\"glossaryLink cmtt_6.0 Data Governance\" title=\"Glossary: Data Subject\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Subject&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; An identified or identifiable natural person &ndash; i.e., a person who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, identification number, etc. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-subject\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">data subject<\/span> as defined in the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> component requirements. The actual &ldquo;human intervention <span class=\"glossaryLink cmtt_4.0 Data &amp; Technology Architecture\"  title=\"Glossary: Process\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Process&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A series of steps that when executed in order achieve the desired outcome. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/process\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>process<\/span>&rdquo; would be incorporated into the various products and business processes of the organization.<br>&#9679; <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Profiling\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Profiling&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Any form of automated processing of personal data consisting of the use of personal data to evaluate certain personal aspects relating to an individual. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/profiling\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Profiling<\/span> &amp; Automated Individual Decisions<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>16<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Design Guidelines: <span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture\"  title=\"Glossary: Master Data\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Master Data&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Entities, relationships, and attributes which are identified as critical, shared across the enterprise, and foundational to key business processes and application systems, and peripheral and(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/master-data\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Master Data<\/span><\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define proposed design guidelines for the appropriate data management requirements for including all in-scope data in the related <span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture\"  title=\"Glossary: Master Data\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Master Data&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Entities, relationships, and attributes which are identified as critical, shared across the enterprise, and foundational to key business processes and application systems, and peripheral and(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/master-data\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Master Data<\/span> <span class=\"glossaryLink cmtt_1.0 Data Management Strategy &amp; Business Case\"  title=\"Glossary: Domain\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Domain&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; The level of the organization that performs specific activities for the data domain. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/domain\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>domain<\/span>. This objective would only pertain to those organizations that have or are developing related <span class=\"glossaryLink cmtt_3.0 Business &amp; Data Architecture\"  title=\"Glossary: Master Data\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Master Data&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; Entities, relationships, and attributes which are identified as critical, shared across the enterprise, and foundational to key business processes and application systems, and peripheral and(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/master-data\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Master Data<\/span>.<br>&#9679; Transparency and Information Rights<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>17<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Design Guidelines: Pause Control and <span class=\"glossaryLink cmtt_4.0 Data &amp; Technology Architecture\"  title=\"Glossary: Process\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Process&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A series of steps that when executed in order achieve the desired outcome. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/process\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Process<\/span><\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define proposed design guidelines for the appropriate data management requirements for executing the &ldquo;pause control <span class=\"glossaryLink cmtt_4.0 Data &amp; Technology Architecture\"  title=\"Glossary: Process\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Process&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A series of steps that when executed in order achieve the desired outcome. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/process\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>process<\/span>&rdquo; as defined in the <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span> component requirements. The actual &ldquo;pause and control <span class=\"glossaryLink cmtt_4.0 Data &amp; Technology Architecture\"  title=\"Glossary: Process\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Process&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A series of steps that when executed in order achieve the desired outcome. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/process\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>process<\/span>&rdquo; would be incorporated into the various products and business processes of the organization.<br>&#9679; Rectification, Erasure, and Restriction of Processing<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>18<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>DQ Rules Unique to <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span><\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define DQ rules that can be applied to in-scope data to measure quality or <span class=\"glossaryLink cmtt_4.0 Data &amp; Technology Architecture\"  title=\"Glossary: Process\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Process&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A series of steps that when executed in order achieve the desired outcome. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/process\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>process<\/span> compliance (Examples: Is there a <span class=\"glossaryLink cmtt_6.0 Data Governance\" title=\"Glossary: Data Subject\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Subject&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; An identified or identifiable natural person &ndash; i.e., a person who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, identification number, etc. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-subject\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">data subject<\/span> restriction applied to this data?).<br>&#9679; <span class=\"glossaryLink cmtt_5.0 Data Quality Management\" title=\"Glossary: Data Quality\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Data Quality&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; 1) A measurement of qualitative and quantitative conditions that determine whether the data is fit-for-purpose in a business process or operation.2) The function that ensures the data being(...)&lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/data-quality\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\" data-mobile-support=\"0\" data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex=\"0\" role=\"link\">Data Quality<\/span> &amp; Proportionality<\/td><\/tr><tr><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">19<\/td><td style=\"vertical-align:top;text-align:left;background-color:#bcbec0;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\"><strong>Purpose of Processing <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Standard\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Standard&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A rule or set of rules that defines expected actions for achieving compliance with associated policies. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/standard\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Standard<\/span> Categories<\/strong><\/td><td style=\"vertical-align:top;text-align:left;background-color:#e5edf5;border-top-color:#000;border-right-color:#000;border-bottom-color:#000;border-left-color:#000;border-width:1px\">The objective is to define a proposed <span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: Standard\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Standard&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; A rule or set of rules that defines expected actions for achieving compliance with associated policies. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/standard\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>standard<\/span> set of categories for the Purpose of Processing. The categories may vary across the range of products and specific business processes of an organization.<br>&#9679; Purpose Limitation &amp; Data minimization<\/td><\/tr><\/tbody><\/table>\n\n\n\n<p><\/p>\n\n\n\n<hr class=\"wp-block-separator has-text-color has-background has-very-light-gray-background-color has-very-light-gray-color is-style-wide\">\n\n\n\n<h2 class=\"wp-block-heading\">Revision History<\/h2>\n\n\n\n<table class=\"wp-block-advgb-table advgb-table-frontend\"><tbody><tr><td style=\"background-color:#005494;color:#ffffff;text-align:left\"><strong>Date<\/strong><\/td><td style=\"background-color:#005494;color:#ffffff;text-align:left\"><strong>Author<\/strong><\/td><td style=\"background-color:#005494;color:#ffffff;text-align:left\"><strong>Description<\/strong><\/td><\/tr><tr><td style=\"text-align:left\">May 2018<\/td><td style=\"text-align:left\">Mark McQueen<\/td><td style=\"text-align:left\">Initial Publication<\/td><\/tr><tr><td style=\"text-align:left;color:#313131;background-color:#eeeeee;border-width:1px;border-top-color:#bcbec0;border-bottom-color:#bcbec0\" data-border-color=\"#bcbec0\">March 2020<\/td><td style=\"text-align:left;color:#313131;background-color:#eeeeee;border-width:1px;border-top-color:#bcbec0;border-bottom-color:#bcbec0\" data-border-color=\"#bcbec0\">Mark McQueen<\/td><td style=\"text-align:left;color:#313131;background-color:#eeeeee;border-width:1px;border-top-color:#bcbec0;border-bottom-color:#bcbec0\" data-border-color=\"#bcbec0\">Knowledge Portal Release;  Broken into a separate Article<em> <\/em>from the <em><span class=\"glossaryLink cmtt_6.0 Data Governance\"  title=\"Glossary: General Data Protection Regulation\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;General Data Protection Regulation (GDPR)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt; EU General Data Protection Regulation, or Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016. &lt;\/div&gt;&lt;div class=glossaryTooltipMoreLinkWrapper&gt;&lt;a class=glossaryTooltipMoreLink href=https:\/\/www.dcamportal.org\/glossary\/general-data-protection-regulation\/  target=_blank&gt;Term details&lt;\/a&gt;&lt;\/div&gt;\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>GDPR<\/span>: The Role of Data Management <\/em><\/td><\/tr><\/tbody><\/table>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Design Requirements, Processes, &amp; Tools As presented in the GDPR (General Data Protection Regulation): The Role of Data Management, the DCAM\u2122 Framework provides the Data Management foundation to support compliance with the GDPR. However, the Work Group identified a set of additional focus areas where ongoing collaboration and knowledge share could produce further valuable best [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_bbp_topic_count":0,"_bbp_reply_count":0,"_bbp_total_topic_count":0,"_bbp_total_reply_count":0,"_bbp_voice_count":0,"_bbp_anonymous_reply_count":0,"_bbp_topic_count_hidden":0,"_bbp_reply_count_hidden":0,"_bbp_forum_subforum_count":0,"_lmt_disableupdate":"","_lmt_disable":"","advgb_blocks_editor_width":"","advgb_blocks_columns_visual_guide":"","_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","_links_to":"","_links_to_target":""},"categories":[329,339],"tags":[404,384,386],"class_list":["post-4069","post","type-post","status-publish","format-standard","hentry","category-6-0-data-governance","category-knowledge-base-6-0-data-governance","tag-pii","tag-gdpr","tag-data-privacy"],"acf":[],"modified_by":"Mark McQueen","author_meta":{"display_name":"Knowledge Manager","author_link":"https:\/\/staging.dcamportal.org\/fr_ca\/author\/knowledge-manager\/"},"featured_img":null,"jetpack_featured_media_url":"","coauthors":[],"tax_additional":{"categories":{"linked":["<a href=\"https:\/\/staging.dcamportal.org\/fr_ca\/category\/6-0-data-governance\/\" class=\"advgb-post-tax-term\">6.0 Data Governance<\/a>","<a href=\"https:\/\/staging.dcamportal.org\/fr_ca\/category\/6-0-data-governance\/knowledge-base-6-0-data-governance\/\" class=\"advgb-post-tax-term\">Articles<\/a>"],"unlinked":["<span class=\"advgb-post-tax-term\">6.0 Data Governance<\/span>","<span class=\"advgb-post-tax-term\">Articles<\/span>"]},"tags":{"linked":["<a href=\"https:\/\/staging.dcamportal.org\/fr_ca\/category\/6-0-data-governance\/knowledge-base-6-0-data-governance\/\" class=\"advgb-post-tax-term\">PII<\/a>","<a href=\"https:\/\/staging.dcamportal.org\/fr_ca\/category\/6-0-data-governance\/knowledge-base-6-0-data-governance\/\" class=\"advgb-post-tax-term\">GDPR<\/a>","<a href=\"https:\/\/staging.dcamportal.org\/fr_ca\/category\/6-0-data-governance\/knowledge-base-6-0-data-governance\/\" class=\"advgb-post-tax-term\">Data Privacy<\/a>"],"unlinked":["<span class=\"advgb-post-tax-term\">PII<\/span>","<span class=\"advgb-post-tax-term\">GDPR<\/span>","<span class=\"advgb-post-tax-term\">Data Privacy<\/span>"]}},"comment_count":"0","relative_dates":{"created":"Posted 6 ann\u00e9es ago","modified":"Updated 6 ann\u00e9es ago"},"absolute_dates":{"created":"Posted on f\u00e9vrier 29, 2020","modified":"Updated on mars 12, 2020"},"absolute_dates_time":{"created":"Posted on f\u00e9vrier 29, 2020 ","modified":"Updated on mars 12, 2020 "},"featured_img_caption":"","series_order":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/pgScg5-13D","jetpack-related-posts":[],"_links":{"self":[{"href":"https:\/\/staging.dcamportal.org\/fr_ca\/wp-json\/wp\/v2\/posts\/4069","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/staging.dcamportal.org\/fr_ca\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/staging.dcamportal.org\/fr_ca\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/staging.dcamportal.org\/fr_ca\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/staging.dcamportal.org\/fr_ca\/wp-json\/wp\/v2\/comments?post=4069"}],"version-history":[{"count":10,"href":"https:\/\/staging.dcamportal.org\/fr_ca\/wp-json\/wp\/v2\/posts\/4069\/revisions"}],"predecessor-version":[{"id":4445,"href":"https:\/\/staging.dcamportal.org\/fr_ca\/wp-json\/wp\/v2\/posts\/4069\/revisions\/4445"}],"wp:attachment":[{"href":"https:\/\/staging.dcamportal.org\/fr_ca\/wp-json\/wp\/v2\/media?parent=4069"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/staging.dcamportal.org\/fr_ca\/wp-json\/wp\/v2\/categories?post=4069"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/staging.dcamportal.org\/fr_ca\/wp-json\/wp\/v2\/tags?post=4069"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}