The IT Law Wiki
(Created page with "== Citation == NIST, (DRAFT) Privacy Risk Management for Federal Information Systems (NISTIR 8062) (May 28, 2015) ([http://csrc.nist.gov/publications/drafts/nistir-8062/n...")
Tag: sourceedit
 
 
(6 intermediate revisions by the same user not shown)
Line 1: Line 1:
 
== Citation ==
 
== Citation ==
   
[[NIST]], (DRAFT) Privacy Risk Management for Federal Information Systems (NISTIR 8062) (May 28, 2015) ([http://csrc.nist.gov/publications/drafts/nistir-8062/nistir_8062_draft.pdf full-text]).
+
[[National Institute of Standards and Technology]], '''An Introduction to Privacy Risk Engineering and Risk Management in Federal Systems''' (NISTIR 8062) (Jan. 2017) ([https://nvlpubs.nist.gov/nistpubs/ir/2017/NIST.IR.8062.pdf full-text]).
   
 
== Overview ==
 
== Overview ==
   
  +
This document provides an introduction to the concepts of [[privacy engineering]] and [[risk management]] for federal systems. These concepts establish the basis for a common vocabulary to facilitate better understanding and [[communication]] of [[privacy risk]] within federal systems, and the [[effective]] [[implementation]] of [[privacy principles]]. This publication introduces two key components to support the application of [[privacy engineering]] and [[risk management]]: privacy engineering objectives and a privacy risk model.
Expanding opportunities in [[cloud computing]], [[big data]], and [[cyber-physical system]]s are bringing dramatic changes to how we use [[information technology]]. While these [[technologies]] bring advancements to U.S. [[National security|national]] and economic security and our quality of life, they also pose [[risk]]s to individuals' [[privacy]].
 
  +
[[Category:Publication]]
 
  +
[[Category:Privacy]]
This publication introduces a [[privacy]] [[risk management]] [[framework]] for anticipating and addressing [[risk]]s to individuals' [[privacy]]. In particular, it focuses on three [[privacy engineering]] objectives and a [[privacy risk]] [[model]].
 
  +
[[Category:Technology]]
  +
[[Category:2017]]

Latest revision as of 04:17, 23 September 2018

Citation[]

National Institute of Standards and Technology, An Introduction to Privacy Risk Engineering and Risk Management in Federal Systems (NISTIR 8062) (Jan. 2017) (full-text).

Overview[]

This document provides an introduction to the concepts of privacy engineering and risk management for federal systems. These concepts establish the basis for a common vocabulary to facilitate better understanding and communication of privacy risk within federal systems, and the effective implementation of privacy principles. This publication introduces two key components to support the application of privacy engineering and risk management: privacy engineering objectives and a privacy risk model.