CCI-005025
CCI-005025 Definition
| Status | |
| Type | CheckType.technical |
Master Assessment Datasheet
Implementation Guidance
Determine if personally identifiable information is corrected or deleted upon request by individuals or their designated representatives.
Validation Procedures
Examine: [SELECT FROM: System and information integrity policy; system and information integrity procedures; personally identifiable information processing policy; system configuration; individual requests; records of correction or deletion actions performed; system audit records; system security plan; privacy plan; privacy impact assessment; privacy risk assessment documentation; other relevant documents or records]. Interview: [SELECT FROM: Organizational personnel responsible for responding to individual requests for personally identifiable information correction or deletion; organizational personnel with information security and privacy responsibilities]. Test: [SELECT FROM: Request mechanisms; automated mechanisms supporting and/or implementing individual requests for correction or deletion].