STIGhub
STIGs
RMF Controls
Compare
← All Controls
PT-3
PII Processing and Transparency
Rev 5
Personally Identifiable Information Processing Purposes
CCI Identifiers (9)
CCI-004549
Identify and document the organization-defined purpose(s) for processing personally identifiable information.
CCI-004550
Defines the purpose(s) of identifying and documenting personally identifiable information.
CCI-004551
Describe the purpose(s) in the public privacy notices and policies of the organization.
CCI-004552
Restrict the organization-defined processing of personally identifiable information to only that which is compatible with the identified purpose(s).
CCI-004553
Defines the processing of personally identifiable information to only that which is compatible with the identified purpose(s).
CCI-004554
Monitor changes in processing personally identifiable information.
CCI-004555
Implement organization-defined mechanisms to ensure that any changes are made in accordance with organization-defined requirements.
CCI-004556
Defines the mechanisms for ensuring any changes are made in accordance with organization-defined requirements.
CCI-004557
Defines the requirements for implementing organization-defined mechanisms.
Linked STIG Checks (0)
No STIG checks reference this control.