Q: 20
What should be the first major goal of a company developing a new privacy program?
Options
Discussion
I get why D is tempting since data minimization is a big privacy principle. D seems like a good first step to set the tone, but maybe I'm missing something about executive buy-in here. Anyone else think D makes just as much sense?
Its B, I don’t think D comes first-tricky since limiting collection sounds right but exec alignment is key early.
B tbh, gotta get execs on board before anything else works.
It’s B for me. You have to start by getting buy-in and input from executives, otherwise anything you build later won’t get any traction. D is important but you need leadership support first or the policies won’t stick. Not totally sure but that’s what I gathered from CIPM practice.
C or D? Both look solid but I’d probably say D since limiting data collection feels core to privacy. Great question, it’s pretty clear and helps you think through real privacy program steps.
Be respectful. No spam.