The Privacy Case Management solution provides you a framework to manage any privacy breaches reported by the users. The solution provides an end-to-end workflow for the privacy team to triage the reported breach and
perform the required investigation and analysis, gather evidence, record the key stakeholders, impacted areas, and regulatory violations, if any.
The following image shows the workflow of the Privacy Case Management application.Figure 1. Privacy Case Management workflow
The life cycle of a privacy case is explained as follows:
A case can be reported by the business users from the Employee Center or users can also reach out to the privacy teams using other modes such as phone call or email, after which the privacy team can create the case on behalf of the user from the Privacy Workspace and attach the related details.
The privacy case team assigns a case analyst to the case.
The case analyst triages and investigates the case and creates Case task workflow tasks. Each task is assigned to a case task owner.
The case task owners add the relevant details to the tasks and submit them for the case analyst to review.
The case analyst then does the following tasks:
Reviews the responses submitted by the task owners.
Records [PI] information objects, key stakeholders, impacted areas, and related areas.
Tracks regulatory breaches and their appropriate lodgement.
Initiates preventive measures and tracks the causes and their consequences.
Manages the issues that arise out of the impacted areas.
The case analyst reviews all the details and closes the case.