ISO/IEC 27018

ISO/IEC 27018

Protecting personally identifiable information in the public cloud

Protecting personally identifiable information in the public cloud

Red Overlay
public cloud
public cloud
Red Overlay

Keep personal identifiable information secure during the COVID-19 pandemic

ISO/IEC 27018 Information technology

Code of practice for protection of personally identifiable information (PII) in public clouds acting as PII processors

The cloud offers organizations and consumers a variety of benefits: cost savings, flexibility and mobile access to information top the list. It also raises concerns about data protection and privacy; particularly around personally identifiable information (PII). PII includes any piece of information that can identify a specific user. The more obvious examples include names and contact details or your mother’s maiden name. But ones people may not readily think of are medical records, IP addresses and banking statements.

Used with ISO/IEC 27001, ISO/IEC 27018 has been published to allow Cloud Service Providers whose infrastructure is certified to the standard to tell their existing and potential customers that their data is safeguarded and won’t be used for any purposes for which they don’t specifically give consent.




Additional information