SESSION ID: HUM-R02 Privacy By Designs Lessons From Beyoncé Ayana Miller Technical Program Manager, Privacy & Data Governance Pinterest #RSA C #RSAC Agenda • To the Left, To the Left. All The Data That You Own in a Portal to the Left: The Ramifications of the Privacy Landscape for Privacy Engineers • Flawless: Mini Privacy by Design Lessons from Beyoncé – Formation – Irreplaceable – Upgrade U • Check On It: What Would Beyoncé Do? • Me, Myself, and I: What Will YOU Do? 2 #RSAC To The Left, To The Left, All The Data That You Own In The Portal To The Left The Ramifications of the Privacy Landscape for Privacy Engineers As consumers, we enjoy the democratization of technology, but we don’t always consider the costs associated with data collection and sharing. #RSAC What Does Beyoncé Have To Do With PbD? • Bake policies into the release cycle and SDLC • Encrypt, aggregate, and obfuscate • Yoyo-ing is a no • Operationalize tooling • Narrow (define clearly) or negotiate • Classify data, systems, and processes • Éxpect the unexpected 5 #RSAC Bake Policies Into Release Eng and SDLC 6 #RSAC #RSAC Encrypt & Aggregate 7 #RSAC Yo Yo-ing Is a No 8 #RSAC Operationalize 9 #RSAC Narrow 10 #RSAC Classify 11 Expect the Unexpected 12 #RSAC #RSAC Flawless Mini Privacy by Design Lessons from Beyonce #RSAC Formation The Value of Governance, Risk & Compliance Engineering Frameworks for Driving Decision-Making • Structure – Identifies commonalities between compliance areas – Drives down work costs • Re-Use – Can be used for new projects and program without the need to re-invitent each time • Common Language – Provides common language for discussion – Allows teams to focus on content rather than structure • Accountability – Enables us to have a framework for discussing roles and responsibilities – Drives clear accountability based on role & responsibility • Strategic Planning & Resourcing – Enables a high level view of resource tracking across projects – Can project future resource needs based on past program performance 14 #RSAC Formation The Value of Governance, Risk & Compliance Engineering Frameworks for Driving Decision-Making 15 #RSAC Formation The Value of Governance, Risk & Compliance Engineering Frameworks for Driving Decision-Making • Key cross-functional reps: legal, security, privacy, IT, and product • Goals: – Make progress on company-wide decision-making, re: data handling • Deal review process collaboration and WG inputs • Set agenda for H2 planning; drive company-level OKRs • Progress vendor reviews – Determine strategy and timing for processing/collection for specific data types • Non-Goals: • Reviewing details of implementations • Detailed reviews of architecture • Detailed product reviews 16 #RSAC Irreplaceable Delivering amazing experiences through champions 17 #RSAC Upgrade U Enhance Your Privacy Products & Services 18 #RSAC Check On It What Would Beyonce Do? #RSAC 20

pdf文档 2020_USA20_HUM-R02_01_Privacy By Design Lessons from Beyonce

安全研究库 > 国外研究报告 > 人的因素 > 文档预览
24 页 0 下载 29 浏览 0 评论 0 收藏 3.0分
温馨提示:如果当前文档出现乱码或未能正常浏览,请先下载原文档进行浏览。
2020_USA20_HUM-R02_01_Privacy By Design Lessons from Beyonce 第 1 页 2020_USA20_HUM-R02_01_Privacy By Design Lessons from Beyonce 第 2 页 2020_USA20_HUM-R02_01_Privacy By Design Lessons from Beyonce 第 3 页 2020_USA20_HUM-R02_01_Privacy By Design Lessons from Beyonce 第 4 页 2020_USA20_HUM-R02_01_Privacy By Design Lessons from Beyonce 第 5 页
下载文档到电脑,方便使用
还有 19 页可预览,继续阅读
本文档由 张玉竹2022-04-08 09:50:53上传分享
给文档打分
您好可以输入 255 个字符
安信天行文库的中文名是什么?( 答案:安信天行 )
评论列表
  • 暂时还没有评论,期待您的金玉良言