Data processing systems for measuring privacy maturity within an organization
First Claim
1. A computer-implemented data processing method for measuring a particular organization'"'"'s compliance with one or more requirements associated with one or more pieces of computer code originating from the particular organization, the method comprising:
- determining, by one or more processors, for each of the one or more pieces of computer code, one or more respective storage locations;
electronically obtaining, by one or more processors, each of the one or more pieces of computer code based on the one or more respective storage locations;
automatically electronically analyzing each of the one or more pieces of computer code to determine one or more privacy-related attributes of each of the one or more pieces of computer code, each of the privacy-related attributes indicating one or more types of privacy campaign data that the computer code collects or accesses;
in response to determining that the computer code has a particular one of the one or more privacy-related attributes;
(A) executing the steps of;
(i) electronically displaying one or more prompts to a first individual requesting that the first individual input information regarding the particular privacy-related attribute;
(ii) receiving input information from the first individual regarding the particular privacy-related attribute; and
(iii) communicating the information regarding the particular privacy-related attribute to one or more second individuals for use in conducting a privacy assessment of the computer code;
(B) changing an indicator associated with the code to indicate that, before the code is launched, the particular attribute should be reviewed by one or more designated individuals; and
(C) changing an indicator associated with the code to indicate that, before the code is launched, the code should be modified to not include the particular attribute;
retrieving, by one or more processors, for at least one individual associated with the organization, privacy training data comprising an amount of privacy training received by the at least one individual;
determining, by one or more processors, based at least in part on the one or more types of privacy campaign data that the computer code collects or accesses and the privacy training data, a privacy maturity score for the particular organization; and
displaying, by one or more processors, the privacy maturity score on a display screen associated with a computing device.
2 Assignments
0 Petitions
Accused Products
Abstract
A privacy compliance measurement system, according to particular embodiments, is configured to determine compliance with one or more privacy compliance requirements by an organization or sub-group of the organization. In various embodiments, the system is configured to determine a privacy maturity rating for each of a plurality of sub-groups within an organization. In some embodiments, the privacy maturity rating is based at least in part on: (1) a frequency of risks or issues identified with Privacy Impact Assessments (PIAs) performed or completed by the one or sub-groups; (2) a relative training level of members of the sub-groups with regard to privacy related matters; (3) a breadth and amount of personal data collected by the sub-groups; and/or (4) etc. In various embodiments, the system is configured to automatically modify one or more privacy campaigns based on the determined privacy maturity ratings.
388 Citations
12 Claims
-
1. A computer-implemented data processing method for measuring a particular organization'"'"'s compliance with one or more requirements associated with one or more pieces of computer code originating from the particular organization, the method comprising:
-
determining, by one or more processors, for each of the one or more pieces of computer code, one or more respective storage locations; electronically obtaining, by one or more processors, each of the one or more pieces of computer code based on the one or more respective storage locations; automatically electronically analyzing each of the one or more pieces of computer code to determine one or more privacy-related attributes of each of the one or more pieces of computer code, each of the privacy-related attributes indicating one or more types of privacy campaign data that the computer code collects or accesses; in response to determining that the computer code has a particular one of the one or more privacy-related attributes;
(A) executing the steps of;
(i) electronically displaying one or more prompts to a first individual requesting that the first individual input information regarding the particular privacy-related attribute;
(ii) receiving input information from the first individual regarding the particular privacy-related attribute; and
(iii) communicating the information regarding the particular privacy-related attribute to one or more second individuals for use in conducting a privacy assessment of the computer code;
(B) changing an indicator associated with the code to indicate that, before the code is launched, the particular attribute should be reviewed by one or more designated individuals; and
(C) changing an indicator associated with the code to indicate that, before the code is launched, the code should be modified to not include the particular attribute;retrieving, by one or more processors, for at least one individual associated with the organization, privacy training data comprising an amount of privacy training received by the at least one individual; determining, by one or more processors, based at least in part on the one or more types of privacy campaign data that the computer code collects or accesses and the privacy training data, a privacy maturity score for the particular organization; and displaying, by one or more processors, the privacy maturity score on a display screen associated with a computing device. - View Dependent Claims (2, 3, 4, 5, 6)
-
-
7. A non-transitory computer-readable medium storing computer-executable instructions causing a computer to execute a method for measuring a plurality of individuals'"'"' compliance with one or more privacy-related requirements, the method comprising:
-
determining, by one or more processors, for each of one or more pieces of computer code, one or more respective storage locations; electronically obtaining, by one or more processors, each of the one or more pieces of computer code based on the one or more respective storage locations; automatically electronically analyzing each of the one or more pieces of computer code to determine one or more privacy-related attributes of each of the one or more pieces of computer code, each of the privacy-related attributes indicating one or more types of privacy campaign data that the computer code collects or accesses; in response to determining that the computer code has a particular one of the one or more privacy-related attributes;
(A) executing the steps of;
(i) electronically displaying one or more prompts to a first individual requesting that the first individual input information regarding the particular privacy-related attribute;
(ii) receiving input information from the first individual regarding the particular privacy-related attribute; and
(iii) communicating the information regarding the particular privacy-related attribute to one or more second individuals for use in conducting a privacy assessment of the computer code;
(B) changing an indicator associated with the code to indicate that, before the code is launched, the particular attribute should be reviewed by one or more designated individuals; and
(C) changing an indicator associated with the code to indicate that, before the code is launched, the code should be modified to not include the particular attribute;retrieving, by one or more processors, for at least one of the plurality of individuals, privacy training data comprising an amount of privacy training received by the at least one individual; determining, by one or more processors, based at least in part on the one or more types of privacy campaign data that the computer code collects or accesses and the privacy training data, a privacy maturity score for the plurality of individuals; and displaying, by one or more processors, the privacy maturity score on a display screen associated with a computing device. - View Dependent Claims (8, 9, 10, 11, 12)
-
Specification