Managing risk
Privacy Self-Assessment Toolkit
Tools + guidance to assess privacy maturity and risk across your organisation
Who this is for
Organisations wanting to self-assess privacy compliance, and uplift maturity.
What is included
- Template: Privacy Maturity Self-Assessment Tool
- Template: Privacy Impact Assessment Framework (with Privacy Risk Assessment Questionnaire)
- Template: PIA Report
- Template: Privacy Audit Survey
- Template: Privacy Audit Report
- Checklist: Common Privacy Risks & Controls
- Checklist: Risks to avoid when selecting and configuring CRM systems
How to use these resources
First use the Privacy Maturity Self-Assessment Tool to gauge where you are at right now: identify gaps, and highlight areas for improvement.
Use the template Privacy Audit Survey as an information gathering tool to kick-start a data inventory process, and/or an organisation-wide privacy audit or compliance review. It includes instructions on how to conduct a privacy audit of your organisation.
Then use the template Privacy Audit Report when writing up the results of your privacy audit. It includes plain language explanations of the law to be considered, and tips on what types of recommendations might be needed to deal with different types of privacy risks. This template also includes a risk rating methodology and detailed instructions.
The included checklists will help you identify and resolve common privacy risks, whether in your BAU or during the design phase of a new project.
Privacy Impact Assessment is a fantastic methodology for assessing the potential privacy risks of new projects, but organisations often struggle with implementation, such as clarifying when and how PIAs should be done.
Start with the template Privacy Impact Assessment Framework, which is a Word document with instructions on what information to fill in where, to help you establish a Privacy Risk Assessment Procedure, customised for your organisation. It includes:
- a five-step procedure, allowing low-risk projects to be reviewed quickly, while higher-risk projects proceed to a more comprehensive PIA
- a Threshold Privacy Assessment questionnaire
- a Risk Rating Table and simple methodology, and
- a comprehensive Privacy Risk Assessment Questionnaire, which can be applied to projects or business units across your organisation to help teams self-identify any privacy risks, gaps or weaknesses. The Questionnaire includes extra topics to assess if you are regulated by the GDPR.
Then when it comes time to conduct a PIA on a project, follow your new procedure including applying the questionnaire, follow the template PIA Report to structure your assessment, and review the Checklist of Common Privacy Risks & Controls.
Buy Now $3000 +GST
Keeping your resources up-to-date
Privacy compliance considerations are changing all the time. We update our resources whenever there is a change in the legislation, a fresh interpretation of the law, new regulatory guidance or a significant new policy which should be reflected in our materials. So you can buy a Compliance Kit with confidence that the resources included reflect the current state of play.
Then if things change in the future? You can update to the latest version of the same Kit at a quarter of the price. Past customers should contact us to receive their 75% discount code before purchasing a new version of their Kit.

