Security/Process/Technical Privacy Review: Difference between revisions

From MozillaWiki
Jump to navigation Jump to search
(Created page with " Status: Draft Date: 2013.11.27 ToDo: ==Purpose== In order to ensure that the software produced my Mozilla is in accordance with our [https://wiki.mozilla.org/Privacy/Princ...")
 
No edit summary
Line 1: Line 1:
  Status: Draft
  Status: Draft
  Date: 2013.11.27
  Date: 2013.11.27
  ToDo:
  ToDo: Finish process


==Purpose==
==Purpose==

Revision as of 22:08, 27 November 2013

Status: Draft
Date: 2013.11.27
ToDo: Finish process

Purpose

In order to ensure that the software produced my Mozilla is in accordance with our privacy principles it is neccessary to review the technical architecture and operations of certain items.

Tools

Entrance

Items have 2 ways to enter the process

  1. Via the Project Kickoff Form
    • Based on the answes to the questions a bug with the proper settings will be filled
  2. A direct Security Assurance: Review Request
    • Keyword set to privacy-review-needed
    • Summary should start with Privacy Review:

Process

  1. When the feature has reached either feature complete or Design Complete stage a privacy wiki for the items is created using the template
  2. Initial required items at wiki creation
    • Feature/Product
    • Product Champion - the contact in the product team for this review
    • Privacy Champion - the privacy contact who will preform the review
    • Security Contact - member of the security team who may be doing other review work
    • Document State - set to new ([NEW] )