WebTrust Audit Framework
WebTrust is AICPA/CICA audit framework, intended to focus on e-commerce services.often where there is a direct interaction with individual end users. WebTrust utilizes the same criteria as SysTrust (the Trust Services Security, Availability, Confidentiality and Processing Integrity principles and criteria). It can also include privacy criteria (based on the Generally Accepted Privacy Principles) where the service provider is interacting with and collecting personal information from individual end users in accordance with a Privacy Policy.. WebTrust results in an audit report indicating whether the specific criteria were met.
WebTrust topics covered by generally accepted privacy principles:
- Management
- Notice
- Choice and consent
- Collection
- Use and retention
- Access
- Disclosure to third parties
- Security for privacy
- Quality
- Monitoring and enforcement
Trackback URL for this post:
- Login to post comments
- 849 reads






