// Level 3 · Controls

PII Processor Controls

Controls and guidance for protecting PII in public clouds.

A.1High

Consent and choice

PII processor should provide cloud service customer with means to comply with PII principal consent obligations.

A.2High

Purpose legitimacy and specification

PII to be processed under contract should not be processed for any purpose independent of the customer's instructions.

A.3Medium

Collection limitation

Restrict the collection of PII to the minimum necessary for the agreed purposes.

A.4Medium

Data minimization

Implement and apply data minimization principles to PII processing.

A.5High

Use, retention and disclosure limitation

PII should not be used, retained, or disclosed beyond what is necessary for the contracted purposes.

A.6Medium

Accuracy and quality

Provide mechanisms to ensure PII is accurate, complete, and up-to-date.

A.7High

Openness, transparency and notice

Provide transparency about PII handling practices including subprocessors and locations.

A.8High

Individual participation and access

Provide means to fulfill data subject rights including access, correction, and erasure requests.

A.9High

Accountability

Inform customer about jurisdictions where PII is processed and any unauthorized access or disclosure.

A.10Critical

Information security

Implement appropriate technical and organizational measures to protect PII.

A.11High

Privacy compliance

Ensure ongoing compliance with PII processing obligations in the cloud service contract.

A.11.1High

Geographical location of PII

Customer must be informed of countries in which PII may be stored.

A.11.2Critical

Return, transfer, and disposal of PII

PII must be securely returned, transferred, or disposed of at end of contract.

A.12High

Disclosure of subcontracted PII processing

Use of subcontractors to process PII should be disclosed to the cloud service customer.