CS-W18 — Privacy-verzoek (AVG / DSAR) · ISO 9001Privacy request (GDPR / DSAR) · ISO 9001
Versie:Version: 1.0-ISOProceseigenaar:Process owner: [CS Manager] — KlantGerelateerd:Related:CS-W17Klik op een stap voor details + ISO-mappingClick a step for details + ISO mapping
Doel: inzage- en verwijderverzoeken (incl. account verwijderen) correct en binnen de wettelijke termijn afhandelen. | Termijn: 1 maand (AVG).
Goal: handle access and deletion requests (incl. account deletion) correctly and within the legal term. | Term: 1 month (GDPR).
📋 ISO 9001-gereedheidscan · raakt ook ISO 27001 + AVGISO 9001 readiness scan · also touches ISO 27001 + GDPR
Dit is een dubbel-relevant proces. Naast ISO 9001 (proces, rollen, registraties) raakt elke stap ook informatiebeveiliging (ISO 27001) en de AVG — identiteitsverificatie, veilige data-export, bewaarplicht. De swimlane legt de rollen (Klant / Agent / DPO-Legal) en de bewaarplicht-uitzondering al vast. Van de 8 stappen is de info bij 3 stappen al aanwezig, bij 5 stappen uit systeem/beleid te halen (verificatienorm, verwerkingsregister, export-formaat, veilig kanaal). Op procesniveau resteert het documentbeheer (goedkeuring + review).
This is a double-relevant process. Besides ISO 9001 (process, roles, records), every step also touches information security (ISO 27001) and GDPR — identity verification, secure data export, retention. The swimlane already captures roles (Customer / Agent / DPO-Legal) and the retention exception. Of the 8 steps, info is already present for 3 and light to gather for 5 (verification norm, processing register, export format, secure channel). At process level, document control (approval + review) remains.