Phone: (011) 7541-421, 3409-301, 3409-335, 6547-293, 3409-310
E-mail: Standards sales: prodaja@iss.rs Education: iss-edukacija@iss.rs Information about standards: infocentar@iss.rs
Stevana Brakusa 2, 11030 Beograd
Main menu

ISO/IEC DIS 27555

Information security, cybersecurity and privacy protection — Guidelines on personally identifiable information deletion

General information

40.00     Mar 26, 2026

ISO/IEC

ISO/IEC JTC 1/SC 27

International Standard

35.030  

Scope

This document contains guidelines for developing and establishing policies and procedures for deletion of personally identifiable information (PII) in organizations by specifying:
—    a harmonized terminology for PII deletion;
—    an approach for defining deletion rules in an efficient way;
—    a description of required documentation;
—    a broad definition of roles, responsibilities and processes.
This document is intended to be used by organizations where PII is stored or processed.
This document does not address:
—    specific legal provision, as given by national law or specified in contracts;
—    specific deletion rules for particular clusters of PII that are defined by PII controllers for processing PII;
—    deletion mechanisms;
—    reliability, security and suitability of deletion mechanisms;
—    specific techniques for de-identification of data.

Life cycle

PREVIOUSLY

PUBLISHED
ISO/IEC 27555:2021

NOW

PROJECT
ISO/IEC DIS 27555
40.00 DIS registered
Mar 26, 2026

National adoptions

Information security, cybersecurity and privacy protection — Guidelines on personally identifiable information deletion

30.99   CD approved for registration as DIS

I224 more