Skip to main content

Repository → 💼 SOC 2 → 💼 P6.0 Privacy Criteria Related to Disclosure and Notification

💼 P6.5 The entity obtains commitments from vendors and other third parties with access to personal information to notify the entity in the event of actual or suspected unauthorized disclosures of personal information.

  • ID: /frameworks/soc-2/p6/05

Description

Such notifications are reported to appropriate personnel and acted on in accordance with established incident-response procedures to meet the entity's objectives related to privacy.

Similar

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 P6.5-1 Remediates Misuse of Personal Information by a Third Partyno data
💼 P6.5-2 Reports Actual or Suspected Unauthorized Disclosuresno data