Protecting Privacy and Consent Online
News
Barnaby Lewis
International Standards Organisation, 23 June 2020
Excerpt
For everyone concerned about online privacy, ISO/IEC 29184 has just been published…
Devices such as these collect and process your personal data. That might include geographical and biometric data, or the frequency and timing of interactions with the device. That’s legitimate, and useful for those who want to be able to get an objective insight into, say, their sleeping habits. But it also provides lucrative opportunities to companies who use such data to market their products and services, often without our informed consent… The new standard, developed jointly by ISO and the IEC’s committee on information security, cybersecurity and privacy protection1), provides details on the implementation of privacy principles from ISO/IEC 29100. Specifically, it addresses consent and choice (Principle 1), and openness, transparency and notice… In addition to providing clearer information about what kind of PII is being collected and how it is being used, ISO/IEC 29184 will help people to better understand just what they’re signing up to when they use connected services and, importantly, how to withdraw their consent…