You are receiving a compliance review questionnaire in connection with your participation under the EU-U.S. and/or Swiss-U.S. Privacy Shield Framework(s) (as may be relevant to your organization). Under the EU-U.S. and Swiss-U.S. Privacy Shield Frameworks, the Department of Commerce monitors effective compliance, including through sending questionnaires to participating organizations, to identify issues that may warrant further follow-up action. In particular, such compliance reviews shall take place when: (a) the Department has received specific non-frivolous complaints about an organization’s compliance with the Privacy Shield Principles, (b) an organization does not respond satisfactorily to inquiries by the Department for information relating to Privacy Shield, or (c) there is credible information that an organization does not comply with its commitments under Privacy Shield.
Failure to respond to this request within 30 days may be subject to enforcement action by the Federal Trade Commission, the Department of Transportation, or other enforcement authorities.
Compliance Review Questionnaire
Please confirm that: (i) you are authorized to make representations on behalf of the organization and its covered entities regarding its adherence to the Privacy Shield Principles; (ii) the information submitted to the Department of Commerce for purposes of self-certification, including with regard to personal data received in reliance upon Privacy Shield, is accurate and correct; (iii) you understand that misrepresentations in any information provided to the Department may be actionable under the False Statements Act, 18 U.S.C. § 1001; and (iv) you understand that failure to adhere to the Privacy Shield Principles with regard to such personal data may lead to enforcement actions by the relevant enforcement authority.
|
|
Please provide the following information concerning the organization that self-certified its adherence to the Privacy Shield Principles:
Organization Name;
Organization Contact (the individual or office within the organization handling complaints, access requests, and any other issues concerning the organization’s compliance with the Privacy Shield Framework(s));
Name;
Title;
Phone number; and
E-mail address
Organization Corporate Officer (the individual certifying the organization’s compliance with the Privacy Shield Framework(s));
Name;
Title;
Phone number; and
E-mail address
Mailing Address
You are receiving this questionnaire with regard to the following matter:
Has the organization received any individual complaints regarding the matter described above? If it has, please describe when any such complaint was received, how it was handled and the outcome, and provide any relevant documentation.
Has this matter been presented to an alternative dispute resolution provider, an EU data protection authority (DPA) or the Swiss Federal Data Protection and Information Commissioner? If it has, please describe when it was presented and the outcome, and provide any relevant documentation.
Has the organization otherwise reviewed this matter? If it has, please describe when any such review was conducted and the outcome, and provide any relevant documentation.
[Potential additional organization or issue-specific questions, if appropriate.]
Please provide any additional information or documentation regarding this matter.
File Type | application/vnd.openxmlformats-officedocument.wordprocessingml.document |
File Modified | 0000-00-00 |
File Created | 2021-01-22 |