Blogs

The need to verify Policy Compliance
Sometimes my mind wanders and I relate what is happening around me to privacy-related situations. Often our team undertakes assessments for our clients privacy programs

Massachusetts bill follows latest Privacy Law standards
Massachusetts Bill Follows Latest Privacy Law Standards Last month, the Massachusetts Senate passed a privacy bill with amendments. The Massachusetts Data Privacy Act (MDPA) in

Thoughts after the IAPP GPS
Thoughts after the IAPP Global Privacy Summit The 2025 IAPP Global Privacy Summit confirmed what many of us in the industry already recognize: privacy has

Personal Privacy Tips
We Give You Permission to Take These Personal Privacy Steps The privacy community recognized Data Privacy Day on January 28th. Here at Privacy Ref, every

Bring AI into the Privacy Program in 2025
Artificial intelligence is seemingly, suddenly everywhere in 2025—and possibly already being used within your organization. With the increasing popularity and use of artificial intelligence by

What is a Fractional Privacy Office?
The regulatory landscape for privacy is getting more complex and comprehensive. We are seeing small and mid-size organizations which were outside the scope of privacy

The Answer to the TikTok Ban is Privacy
Earlier this year, the US Congress decided that TikTok, the social media app primarily used for sharing short form video content, was a security risk

Three things your business can do to comply with 2025 state laws
As of January 15th, 2025, fourteen US state comprehensive privacy laws will be in effect, as the laws of Delaware, Iowa, Nebraska, New Hampshire, and

Data Inventories
Your roadmap to data organization and control Data inventories help you to understand what data your company has, where it comes from, how it’s being

Click to Cancel
What the FTC’s “Click to Cancel” Rule Means for Your Business After more than a year, the Federal Trade Commission announced a final “click to

Personal Information
Here, Ben Siegel breaks down the idea of “personal information” in terms anyone can understand to help your privacy office succeed. Please share this micro-training

A Quick Rundown on PIAs
Ben Siegel, Sr. Privacy Consultant, has extensive experience in conducting and managing privacy risk assessments. In this video, he provides a clear and concise explanation

So You Want to Pass the IAPP’s Certification Exam?
If you are considering or currently studying for one of the IAPP certifications, you probably have a few questions. I answer these questions all the

U.S. State Privacy Laws vs NIST Privacy Framework
The National Institute of Standards and Technology (NIST) Privacy Framework is a free online tool for organizations that can be used to measure privacy risk

Assessing Privacy Processes
I wrote previously about how privacy doesn’t really care about AI in particular, but that the use of personal information overall is the concern. However,