What is a Privacy Impact Assessment?
The PIA is a process for examining the risks and ramifications of collecting, maintaining and disseminating information in identifiable form in an electronic system, and for identifying and evaluating protections and alternative processes to mitigate the impact to privacy of collecting information in identifiable form. Identifiable form refers to data within the system or online collection that permits the identity of an individual to whom the information applies to be reasonably inferred by either direct or indirect means. The PIA provides a framework for considering the privacy implications of information collected on individuals and where potential disclosure risks may lie. Informed decision making and the ability to design a system which addresses actual or potential privacy concerns are dependent on early identification of privacy issues. Privacy concerns should always be considered when requirements are being analyzed and decisions are being made about data collection, usage, sto