Personal Information Impact Assessment refers to the analysis of the risk factors and evaluation for improvement if the information subject is concerned about the infringement of personal information by the operation of the personal information file corresponding to Article 35 of the Act.
The evaluation organization shall be reviewed and designated by the Designated Judging Committee composed of up to 15 members appointed by the Minister of Public Administration and Security. There is.
[Evaluation procedure]
Designated application announcement → Designated application reception → Review of submitted documents → Designated examination committee composition → Document screening → On-site audit → Comprehensive audit → Verification of audit result → Identification of personnel performing impact assessment → Assignment of evaluation agency
The qualifications of personnel who can perform personal information impact assessment can be classified into general performance personnel and advanced performance personnel, The notices on personal information impact assessment describe the eligibility requirements as follows.
1. General performance personnel qualification
A. Any person who has experience in assessing impacts for more than 5 years after being qualified as the general performance worker in Item 1
B. A person who has worked in the field of personal information impact assessment for more than one year after obtaining the personal information manager qualification implemented by Korea CPO Forum.
2. Advanced Performance Personnel Qualifications
A. Any person who has experience in assessing impacts for more than 5 years after being qualified as the general performance worker in Item 1
B. Applicants must have at least three years of experience in assessing impacts after obtaining a Ph.D.
C. Information management engineer, computer system application technician, Persons with at least three years of experience in assessing impacts after acquiring the qualification for ICT
'Security' 카테고리의 다른 글
| What is IAM?? (0) | 2018.12.19 |
|---|---|
| SCTP(Stream Control Transmission Protocol) Note 1 (0) | 2018.12.09 |
| Firmware encrypt note (0) | 2018.12.05 |
| IoT law note (0) | 2018.10.03 |
| Differences between ACESS TOKEN and REFRESH TOKEN Note 1 (0) | 2018.09.29 |