Fork me on GitHub

InformationGathering -> Logging: PII logging concept

Risk and Opportunity

Risk: Personal identifiable information (PII) is logged and the law of GDPR is not followed.
Opportunity: A concept how to log PII is documented and applied.

Usefulness and Requirements of this Activitiy

Usefullness: Very Low
Required knowledge: Very Low (one discipline)
Required time: Very Low
Required resources (systems): Very Low

Additional Information

Implementation hints:

OWASP SAMM VERSION 2

ISO27001 2017