Data Privacy & Security

What is it?

Data privacy and security refers to the policies and practices in place to protect private or sensitive information. This might include, for example, personally identifiable information (PII), or any information that can be used to identify an individual. It could also include information about individuals’ movement that could be tracked if using handheld air quality monitors. To address risks associated with sensitive data, clear methods for safeguarding sensitive data need to be created.

The goals of privacy and security should include:

Some best practices to consider when developing privacy and security guidelines include:

Note

Questions to consider when adopting or creating a privacy and security framework:

  • Who should be involved?
  • What data or datasets are most at risk of misuse?
  • Are there datasets that should be closed completely?
  • If the data is sensitive, how might you share data products (e.g., maps, charts, statistics) instead of raw data?
  • Are there any privacy and security tools or practices already in place?
  • Do you need legal protections?
  • What resources, like data sharing agreements, can you create to bolster data security?

Why does it matter?

Data security and privacy helps prevent data breaches, safeguarding personal information collected to help prevent harm to individuals. By creating transparent and clear security and privacy guidelines, data collectors can build and strengthen trust with communities.

Mentioned and additional resources: