DIN Standards Committee Information Technology and IT Applications
Data protection and privacy by design and by default
Abstract
The scope of the proposed work item is to revise EN 17529:2022 'Data Protection and Privacy by Design and by Default' and to align it with the latest developments in ISO/IEC standards. The revision would also incorporate additional high-level requirements for privacy and data protection by design and by default and ensure that all relevant requirements of the GDPR are accurately reflected. The revised standard would provide a more comprehensive and up-to-date framework to assist organizations in complying with their data protection and privacy by design and by default requirements under the GDPR and other data protection laws. Additionally, the revised standard is expected to serve as the basis for the development of a specific GDPR Certification Scheme in accordance with art.25 (3) of the GDPR, in line with the European Data Protection Board guidelines. During the revision of the EN 17529, it will be ensured that the mandate is preserved and that the technical reports are being developed in a consistent manner with this revision.
Begin
2026-04-27
WI
JT013115
Planned document number
prEN 17529 rev
Responsible national committee
NA 043-04-13 GA - DIN/DKE Joint working committee Cybersecurity
Responsible european committee
CEN/CLC/JTC 13/WG 5 - Data Protection, Privacy and Identity Management
previous edition(s)
Data protection and privacy by design and by default
2022-05