From the course: IAPP Certified Information Privacy Manager (CIPM) Cert Prep

Unlock this course with a free trial

Join today to access over 25,300 courses taught by industry experts.

Mergers and acquisition (M&A) privacy risks

Mergers and acquisition (M&A) privacy risks

- Let's talk about some of the important activities that you should undertake as your organization prepares to undergo a merger or acquisition. First, you should perform due diligence to examine the new organization and understand the data that organization controls or processes, the systems and software involved in data processing, applicable jurisdictions and regulations, the organization's privacy program framework, and its information security program. A pre-merger due diligence check also includes documenting all third party data sharing agreements, vendors, or other data processors, including the use of cloud computing services. For divestitures, due diligence focuses on ensuring that all data privacy protection obligations are understood before the transfer. For example, data may need to be purged prior to the transfer, obligations may need to be passed on to new owners as part of any transfer agreement, and legacy…

Contents