Skip to Main Content
ARIS - SHARE YOUR IDEAS
How can we make ARIS better?
Status Open for voting
Workspace Risk & Compliance
Created by Sylvia Groenbos
Created on Jun 14, 2022

GDPR requires all systems to be able to delete record when requested to do so by the customer

It is required by law (GDPR) that when a customer wants their data to be deleted from a system it should be possible to do so (deletion by design). Currently this is not possible in ARCM. We, as xxx, want this functionality to be implemented.

  • Jeroen van der Sluis
    Reply
    |
    Sep 14, 2023

    Within in our company: deletion by design is key. An IT system must have the capability to delete data after the retention period. For instance non relevant or old risk assessments may not live in the database for ever but must be deleted. We need a functionality were this done. Would be awesome when you can say delete this data after x year (retention period)

  • Product Manager
    Georg Wilhelm
    Reply
    |
    Sep 14, 2023

    So far, we offer the possibility to anonymize user in ARCM (see help files chapter Anonymize ARIS Risk and Compliance users) instead of deleting them, as we see this is relevant for the purpose of audit logs etc.)

  • Product Manager
    Georg Wilhelm
    Reply
    |
    Sep 14, 2023

    Dear customers, please vote on this idea if it is also relevant for your company, as we would like to know, if this is relevant for multiple companies. Thank you!