Privacy considerations in the software lifecycle
Privacy by Design (PbD) considerations should be integrated into each stage of the software development life cycle to ensure that privacy is prioritized from the initial design phase through to implementation, deployment and maintenance. Below are recommended considerations for each stage:
Requirements Gathering and Analysis
Define privacy requirements [Mandatory] - Identify and document privacy requirements based on b...
Design
Privacy design principles [Mandatory] - Apply privacy principles such as data minimization, pur...
Development
Secure coding [Mandatory] - Follow secure coding practices to prevent common vulnerabilities s...
Testing
Privacy testing [Mandatory] - Include privacy testing as part of the software testing process, ...
Deployment
Data protection safeguards [Mandatory] - Implement appropriate safeguards to protect personal d...
Operations and Maintenance
Privacy policies [Mandatory] - Regularly review and update privacy policies and procedures to r...
Upgrade or Decommission
Data Disposal [Mandatory] - Ensure that all personal data stored by the software is securely de...