canmove, Confirmed users
1,537
edits
| Line 179: | Line 179: | ||
In this section, the privacy champion will identify areas of user data risk and recommendations for minimizing the risk. | In this section, the privacy champion will identify areas of user data risk and recommendations for minimizing the risk. | ||
== Breach and Log Disclosure == | |||
''The Risk'' is that information logged by the Web App server will be unintentionally disclosed to untrusted third parties through a breach event. | |||
''Recommendation:'' Work with infrasec and IT/Ops to minimize logging, minimize retention window, and deploy a secure logging infrastructure. | |||
{{ResolutionBox|{{new|}}}} | |||
= Alignment with Privacy Operating Principles = | = Alignment with Privacy Operating Principles = | ||