Privacy Level Agreement

PLA WG call - March 30th [Meeting Minutes]

  • 1.  PLA WG call - March 30th [Meeting Minutes]

    Posted Apr 01, 2021 03:24:00 AM

    Dear members,
                          please find below a summary of the discussions that took place during our recent meeting.

    Agenda Items (AIs):

    1. Progress status check on the CCPA-GDPR Gap Analysis Activity and next steps
    2. AoB

    Participants (6):

    Martim T. Barata
    Rishabh Gaikwad
    Lefteris Skoutaris (PM)
    Linda Strick
    Mariusz Trajfacki

    Meeting Minutes (MMs)

    1. Progress status check on the CCPA-GDPR Gap Analysis Activity and next steps
    • The PLA WG has completed both the mapping and gap analysis between the CCPA and the GDPR (Would like to thank all professionals that made this work's delivery possible),
    • The objective of the gap analysis is determining what are the CCPA provisions which bring, in full or partially, additional compliance requirements, when compared to the mapped GDPR articles,
    • Paolo (co-chair) and his team are currently reviewing the gap analysis results and will post their feedback (agree/disagree with justification) under column 'I' of the mapping tool and gap analysis tab for discussing at the next call. The input is expected to be provided to the group in advance to our next call (AP1),
    • Martim provided an overview of the approach followed by the co-chair team for interpreting the group's gap analysis results,
    • The next step, after meeting consensus with respect to the identified gaps (or deltas to the GDPR), the group will be tasked to compare those with the PLA CoP (since the CoP is aligned with the GDPR but at the same time extends beyond that),
    • Rish shared with the group a document that includes amendments applied to the CCPA (specifically on section 1798.145) and which could potentially alter the mappings of those sections and the GDPR. The document has been shared with the co-chair team to investigate further.

    2. AoB
    • Next call is scheduled on April 13th , 6 pm EEST (5 pm CET / 9 am PST / 12 pm EST). 

    Action Points (APs)

    AP1: The co-chair's team to share with the group its feedback on the CCPA-GDPR gap analysis work that has been delivered by the PLA WG in advance to our next call meeting.

    Please let me know if something essential is missed above.
    Thank you again for your attendance and support.
    Best regards,

    Eleftherios Skoutaris
    Program Manager
    Cloud Security Alliance