Roles installed with Privacy Management
Summarize
Summary of Roles installed with Privacy Management
The GRC: Privacy Management application in ServiceNow installs specific roles to support privacy compliance tasks at various levels within an organization. These roles enable users to manage privacy assessments, controls, policies, cases, and compliance programs effectively.
Show less
Roles and Their Responsibilities
- Privacy Analyst [snprivacy.analyst]: Manages privacy compliance for owned processing activities by assessing activities, managing controls, addressing compliance issues, and monitoring control effectiveness.
- Privacy Manager [snprivacy.manager]: Oversees organization-level privacy compliance, develops policies, monitors controls, plans privacy programs, supervises teams, and reports compliance status to leadership.
- Privacy Admin [snprivacy.admin]: Configures privacy management solutions including impact assessments, automated workflows, and rules for processing activities; monitors dependencies and manages scripts.
- Privacy Assessment Responder [snprivacy.assessmentresponder]: Responds to privacy assessments and raises privacy requests via the portal as key stakeholders.
- Privacy Business User [snprivacy.businessuser]: Edits assigned processing activities in the Discover state and responds to assessments.
- Privacy Developer [snprivacy.developer]: Writes custom scripts related to privacy management configurations.
- Privacy Employee User [snprivacyemp.privacyemployee] (with Privacy Employee User app): Allows employees to request privacy impact assessments, report privacy cases, acknowledge policies, and create policy exceptions and issues from the Employee Center.
- Lite Operators (with GRC: Privacy Lite User app): Roles such as assessment responder, business user, and data owner admin enable users to respond to assessments, manage processing activities, handle breach and risk assessments, control attestations, remediation tasks, and close issues related to privacy.
Practical Benefits for ServiceNow Customers
By assigning these predefined roles, ServiceNow customers can:
- Clearly delineate privacy responsibilities across analysts, managers, administrators, and other stakeholders.
- Efficiently manage privacy compliance activities including assessments, controls, policies, and case management.
- Leverage automation and scripting capabilities to streamline privacy workflows and processing activity management.
- Empower employees and business users to engage with privacy processes appropriately according to their roles.
- Support scalable privacy programs with role-based access aligned to organizational privacy governance needs.
These roles ensure that privacy management tasks are conducted securely, compliantly, and with appropriate oversight, enabling customers to maintain a strong privacy compliance posture using ServiceNow’s GRC: Privacy Management application.
The GRC: Privacy Management application installs the roles for the privacy analyst, the privacy manager, and the privacy administrator to perform their respective tasks.
| Role title [name] | Description | Contains roles |
|---|---|---|
| Privacy Analyst [sn_privacy.analyst] |
Privacy analysts are responsible for managing the privacy compliance posture
of the processing activities owned by them. They perform the following tasks:
|
|
| Privacy Manager [sn_privacy.manager] |
Privacy managers are responsible for managing the overall organization level
privacy compliance posture. They perform the following tasks:
|
|
| Privacy Admin [sn_privacy.admin] |
Privacy administrators administer the privacy policy and compliance
management. Users assigned this role are responsible for configuring privacy
management solutions as per the privacy team's requirements. They perform the
following tasks:
|
|
| Privacy assessment responder [sn_privacy.assessment_responder] |
Privacy assessment responders can respond to the privacy assessments as key stakeholders. They can also raise privacy requests from the portal. |
|
| Privacy business user [sn_privacy.business_user] |
Privacy business users can edit the assigned processing activities in the Discover state, and also respond to the assessments. |
|
| Privacy developer [sn_privacy.developer] |
Privacy developers can write custom scripts | sn_privacy.admin |
| If the Privacy Employee User application is installed, then the following roles are available. | ||
| Privacy employee user [sn_privacy_emp.privacy_employee] |
Enables your employees to perform the following operations from the Employee Center:
|
|
| If the GRC: Privacy Lite User application is installed, then the following roles are considered as lite operators. | ||
|
Users with the lite operator role can do the following:
|
|