prEN ISO/IEC 29151

Information security, cybersecurity and privacy protection - Controls and guidance for personally identifiable information protection (ISO/IEC DIS 29151:2024) prEN ISO/IEC 29151

Publication date:   Dec 19, 2024

General information

40.60 Close of voting   Mar 11, 2025

CEN/CENELEC

CEN/CLC/JTC 13 Cybersecurity and Data Protection

European Norm

35.030   IT Security

Buying

Draft

Language in which you want to receive the document.

Scope

This Recommendation | International Standard establishes controls, purpose, and guidance for implementing controls, to meet the requirements identified by a risk and impact assessment related to the protection of personally identifiable information (PII).
In particular, this Recommendation | International Standard specifies guidance based on ISO/IEC 27002, taking into consideration the controls for processing PII that may be applicable within the context of an organization's information security risk environment(s).
This Recommendation | International Standard is applicable to all types and sizes of organizations acting as PII controllers (as defined in ISO/IEC 29100), including public and private companies, government entities and not-for-profit organizations that process PII, in particular, organizations that do not establish or operate a privacy information management system.

Life cycle

PREVIOUSLY

PUBLISHED
EN ISO/IEC 29151:2022

NOW

IN_DEVELOPMENT
prEN ISO/IEC 29151
40.60 Close of voting
Mar 11, 2025