Evaluation
At this stage, we assess the organisation's current state:
- • analysis of the personally identifiable information (PII) processed
- • definition of roles (controller/processor)
- • assessment of conformity with ISO/IEC 27701:2025
- • gap analysis against the requirements of the standard
- • assessment of privacy-related risks
Objective: identify the gaps and define a clear implementation plan.
