Question

Discuss the implications of the lack of controls over the available data and its use by...

Discuss the implications of the lack of controls over the available data and its use by commercial organizations.

Homework Answers

Answer #1

An organization’s private data can be considered a corporate asset, and its value can be positive or negative based on the control exercised over it. Well-controlled and appropriately used data can enhance an organization’s worth, providing additional value to its customers. Disclosed personal data becomes a liability, reducing customer confidence and increasing the risk of legal and regulatory activity. Management may be reluctant to assign monetary values to privacy until it is lost. A corporate classification program for privacy-protected data will assist in prioritizing the data. Assigning a sensitivity level — such as proprietary, confidential, or public — to data assists in evaluating the appropriateness of the controls over the technology and business processes that handle it. The auditor can ask the following questions: • What are the regulatory penalties for mishandling privacy protected data? What legal recourse would the impacted individuals have? • How has data ownership been assigned, and have appropriate controls been established in handling the data? • Has the data been classified? Are the levels of classification appropriate for ensuring adequate privacy controls? • How widely would a privacy breach be disclosed? Who would need to be notified? How will they be notified? • How costly would it be to remediate various types of unauthorized privacy disclosures? • How would a privacy breach impact customer, citizen (in case of a public entity), or investor confidence? How much would it cost to recover trust and confidence.

Know the answer?
Your Answer:

Post as a guest

Your Name:

What's your source?

Earn Coins

Coins can be redeemed for fabulous gifts.

Not the answer you're looking for?
Ask your own homework help question
Similar Questions
discuss the Bush Doctrine and its implications
discuss the Bush Doctrine and its implications
Discussion 6: Chapter 6 Internal Controls over Payroll Discuss internal controls over payroll including how physical...
Discussion 6: Chapter 6 Internal Controls over Payroll Discuss internal controls over payroll including how physical documents are used for control. Your post must be at least 300 words, formatted and cited in proper APA style with support from at least 2 academic sources.
Discuss the personal and professional implications of so much individual data being gathered, stored, and sold....
Discuss the personal and professional implications of so much individual data being gathered, stored, and sold. Should businesses be allowed to gather as much as they want? Should individuals have more control over their data that are gathered?
Discuss some of the six validation controls used to validate the data on a web form.
Discuss some of the six validation controls used to validate the data on a web form.
2) (6 marks) Discuss the three key controls over notes payable (state the related assertions).
2) Discuss the three key controls over notes payable (state the related assertions).
Discuss the long term implications from the large federal budget deficits amassed over the past five...
Discuss the long term implications from the large federal budget deficits amassed over the past five years and the growth in the national debt.
Discuss the adage hire for attitude, train for skill. What are its implications for the attraction,...
Discuss the adage hire for attitude, train for skill. What are its implications for the attraction, training, and retention of top talent?
Describe and explain the Prisoner's Dilemma. Discuss its implications for firms' pricing in an oligopolistic market.
Describe and explain the Prisoner's Dilemma. Discuss its implications for firms' pricing in an oligopolistic market.
Discuss types of controls companies might choose to use in the financial services industry and why.
Discuss types of controls companies might choose to use in the financial services industry and why.
Discuss the types of electronic databases available for collecting data. Include a manual form for data...
Discuss the types of electronic databases available for collecting data. Include a manual form for data collection and a computerized form for data collection. You will be using this form to set up your outbreak syndromic surveillance plan data collection.