Prudential: Regulatory Compliance - SOC 2 - Data Disposition
Edward Johnson, PMPĀ®, CSMĀ®
August 19
To satisfy contractual obligations, Prudential must purge plan and participant data as agreed upon for each respective contract. Working with the business and control partners (Privacy, Risk and Compliance), We were able to leverage previous work done for a previous effort. We developed a framework for identifying wat should be deleted and when data can be deleted with considerations for respective data retention policies for over 140 active applications, the order in which the applications should be purged and other crucial criteria.