Exploring Privacy Management
The ServiceNow® Privacy Management application enables you to manage your company’s privacy programs. Some examples of privacy programs are privacy regulatory compliance programs, privacy impact assessments, privacy policy management, and so on.
- Home address
- Location data
- Identification card number
- Biometric data
When your organization collects personal data, the data is exposed to multiple risks such as using the personal data for an organizational purpose without taking consent from the owners and the data getting inadvertently leaked. These events lead to compliance failure. Failure to manage data privacy laws can result in heavy fines and loss of customer and employee trust. This failure to protect data can also impact brand reputation.
The Privacy Management application helps you to manage multiple privacy regulations such as the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and the Australian Privacy Act. It also helps you to manage frameworks such as the National Institute of Standards and Technology (NIST), ISO 27001, and so on. The Privacy Management solution enables you to implement privacy policies and acknowledgments to handle the personal data of customers and employees.
- Creating an inventory of critical business processes, applications, and vendors for privacy assessments.
- Setting up the privacy library content such as authority documents, citations, control objectives, risk statements, and policies.
- Managing privacy impact assessments.
- Managing privacy risk assessments.
- Discovering processing activities that process personal information.
- Managing processing activities to track their risk and compliance posture with continuous monitoring and issue management capabilities.
- Understanding and analyzing the overall privacy posture of your organization with various dashboards and reports.
The Privacy Management application is available on the Privacy Workspace. This workspace displays Home page, the Tasks page, the Issues overview page, and the List view. Every item on and inside these pages and lists are only specific to the Privacy Management application. This means that, for example, if you view citations and authority documents, they are specific to Privacy Management.
The Privacy Management solution is available as an add-on in the Integrated Risk Management (IRM) suite.