Loading...
Loading...
Copyright © 2026 Anove International B.V.
All product names, logos, and brands are property of their respective owners. Use of these names does not imply affiliation, endorsement, or partnership.
ISO 29100
ISO/IEC 29100 providing a privacy framework and principles for protecting personally identifiable information.
ISO/IEC 29100 is an international standard published jointly by ISO and IEC that provides a high-level privacy framework for protecting personally identifiable information (PII) within information and communication technology systems. It defines a common privacy terminology, identifies the actors and roles involved in processing PII, and sets out a set of privacy principles that organisations can use to guide the design and operation of privacy safeguards.
ISO/IEC 29100 is a framework and guidance standard rather than a set of certifiable requirements, so it is not independently certifiable. Instead it underpins other privacy standards, including ISO/IEC 27018 and ISO/IEC 27701. First published in 2011, the current edition dates from 2024.
Adopt shared definitions and concepts for PII, actors and roles to support consistent privacy practice.
Apply the framework's privacy principles, covering areas such as consent, purpose limitation, data minimisation, accuracy, accountability and openness.
Identify PII principals, controllers and processors and the responsibilities attaching to each in the processing lifecycle.
Use the framework as the basis for implementing more detailed privacy standards and safeguards.
Read more
Anove scans your stack against ISO 29100 and 260+ other frameworks in minutes.