ISO-27018

Information technology — Code of practice for protection of personally identifiable information (PII) in public clouds

Code of practice for protecting PII processed by public cloud service providers. Extends ISO 27002 with cloud-specific PII protection controls covering consent, data minimization, and cross-border transfers.

Document
ISO/IEC 27018:2019
URL
https://www.iso.org/standard/76559.html
Label
Standard
Keywords
cloud PII privacy
Derived from
ISO-27001

Domain: Cybersecurity and Privacy · Standard