Please download the dossier by clicking on the dossier button x
×

Data processing systems and methods for operationalizing privacy compliance via integrated mobile applications

  • US 10,169,790 B2
  • Filed: 02/14/2018
  • Issued: 01/01/2019
  • Est. Priority Date: 04/01/2016
  • Status: Active Grant
First Claim
Patent Images

1. A computer-implemented data processing method for electronically receiving the input of processing activity data related to a processing activity and electronically calculating a risk level for the processing activity based on the data inputs comprising:

  • providing a software application for installation on a computing device;

    displaying on a graphical user interface, via the software application, a prompt to create an electronic record for a processing activity, wherein the processing activity utilizes personal data collected from at least one or more persons or one or more entities;

    receiving a command to create an electronic record for the processing activity;

    creating an electronic record for the processing activity and digitally storing the record;

    presenting, on one or more graphical user interfaces, a plurality of prompts for the input of processing data related to the processing activity;

    electronically receiving processing activity data input by one or more users via the graphical user interface, wherein the processing activity data identifies each of;

    a description of the processing activity;

    one or more types of personal data related to the processing activity;

    a subject from which the personal data was collected;

    the storage of the personal data; and

    access to the personal data;

    processing the processing activity data by electronically associating the processing activity data with the record for the processing activity;

    receiving, via the software application, one or more inputs related to processing activity, the one or more inputs comprising an image of a privacy incident captured using the computing device;

    automatically scanning the image of the privacy incident;

    analyzing the scanned image to identify the processing activity associated with the privacy incident;

    modifying the electronic record for the processing activity based at least in part on the one or more inputs;

    analyzing the image to identify one or more contents in the image;

    determining, based at least in part on the one or more contents, whether to modify a risk level for the processing activity; and

    in response to determining to modify the risk level, calculating an updated risk level for the processing activity by;

    identifying a plurality of risk factors for the processing activity, wherein each of the plurality of risk factors has a risk rating and an associated weighting factor and the plurality of risk factors includes;

    a type of the personal data collected as part of the processing activity; and

    storage information for the personal data collected as part of the processing activity;

    electronically modifying the risk rating for at least one of the plurality of risk factors;

    after modifying the risk rating for at least one of the plurality of risk factors, electronically calculating the updated risk level for the processing activity based upon, for each respective one of the plurality of risk factors, the risk rating and the weighting factor for the risk factor; and

    digitally storing the updated risk level associated with the record for the processing activity.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×