University-Wide Privacy Principles
Privacy Principles
Our university-wide privacy principles are best practices and reflect common elements found in privacy regulations worldwide, many of which apply to Harvard. To the extent possible, these principles should be incorporated into new and existing business operations, research activities, technologies, and other processes involving personal information.
The Companion Guide
This Companion Guide is intended to provide additional context and specificity to assist us in the application of the Principles. Privacy concerns should always be weighed against other University requirements and goals. For the full, accessible version of The Companion Guide, please click the link below to download a .PDF version.
Training
Familiarize yourself with the Privacy Principles by attending self-paced, online training through the Harvard Training Portal.
What about GDPR?
The General Data Protection Regulation (GDPR) is a regulation that applies to any organization that controls or processes the personal data of individuals in the European Economic Area (EEA), regardless of the organization’s location. GDPR sets out strict obligations - such as being open about how personal information is used, minimizing what data is collected, ensuring data is handled safely and accurately, and responding appropriately to breaches.
Learn more by visiting our website (HarvardKey required) which provides helpful resources, guidance, and tools to help you understand your responsibilities and protect personal data in accordance with GDPR.
Building Privacy, Building Trust with Trevor Hughes
Trevor Hughes, the President and CEO of the International Association of Privacy Professionals (IAPP), speaking at a recent ISDP Retreat on Privacy Principles.