CYB260ProjectOne

.docx

School

Southern New Hampshire University *

*We aren’t endorsed by this school

Course

260

Subject

Business

Date

Apr 3, 2024

Type

docx

Pages

3

Uploaded by CoachSnail3055

Report
CYB 260 Project One Milestone Template I. Analysis of Requirements Select three fair information practice principles from the privacy statement provided by your instructor. Then fill in the blank cells in the table below. Requirements Table Fair Information Practice Principle Applicable Privacy Law or Laws Level of Compliance Safeguards Information collection and utilization -Fair Credit Reporting Act (FCRA) -HIPPA -State level compliance laws -COPPA -Company is not informing customers as to how data collection is occurring -Security/protection of user information is unknown to users -Users are not being informed as to how data is being utilized -Children data/information parameters of protection not clear -Privacy policy enforcement -Users need to be informed of how user data is being collected, stored and utilized -Updated privacy policy contents as needed -Per COPPA, parents/guardians need access to control information collected from children -Consumers need to be notified when their information is shared with an insurance provider -Per the FCRA, said company would need to seek permission through the FCRA to potentially share user information with an insurance provider 1
Fair Information Practice Principle Applicable Privacy Law or Laws Level of Compliance Safeguards Ease of access and editing/correcting personal information -Fair Credit Reporting Act (FCRA) -HIPPA -State-specific compliance laws -COPPA -Users have the ability to update or change information stored by the company -Said company must comply with allowing users to delete all information collected -Per COPPA, parents/guardians must have the ability to control and filter information that is collected from children -Encryption of data PII and consumer choices -HIPPA -State-specific compliance laws -US Constitution -COPPA -Privacy policy must include control for parents/guardians to choose what information is shared (per COPPA) -See state-specific compliance laws to compare with compliance of federal -Provide consistent updates and amendments to the privacy statements -Notify users when privacy statement is modified -Make user perform a “check” to ensure they have confirmed receipt of updated privacy statements and agree -Per COPPA, privacy statements need to take parent/guardians into consideration to protect shared information -Data collection can be either opted out of or in to easily II. Business Implications A. Discuss the role of ethics as a business driver in this decision. How do the organizational values (as an ethical stance) align to the decision? What responsibility does the organization have pertaining to privacy? Insert your response in the box below. 2
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
  • Access to all documents
  • Unlimited textbook solutions
  • 24/7 expert homework help