Third Party Providers and Employees
Third Party Risk- Review and audit contracts and services with third party providers. Ensure they are compliant in their data privacy security measures in
regards to consumer personal data that is shared with them. Establish due diligence and onboarding process for providers to ensure compliance.
Employee Readiness– Assess your employees’ current understanding of the law and provide effective CCPA training to enable employees responsible for handling consumer requests. In addition to training, organizations should:
- Monitor system use containing personal information
- Establish written procedures, guidelines, and standards for all IT applications used within the company
- Set policy for evaluation of prospective software solutions to evaluate compliance
- Stay current with and understand CCPA legislation and amendments