Question 1 of 30
InnovTech Solutions, a rapidly growing technology company, has been experiencing increasing public and regulatory scrutiny regarding its data privacy practices. Several high-profile data breaches and growing concerns from customers about the handling of their personal information have led to a significant decline in public trust. The company\'s current organizational structure lacks a clear definition of roles and responsibilities related to data protection, and there is no established process for addressing stakeholder concerns about privacy. Senior management recognizes the need to improve the company\'s social responsibility performance and mitigate the risks associated with inadequate data privacy practices. Based on the principles of ISO 26000, what is the MOST effective initial step InnovTech should take to address these challenges and enhance its commitment to social responsibility in the context of data privacy?
Implement a comprehensive organizational governance framework aligned with ISO 26000 principles to ensure clear accountability, ethical decision-making, and stakeholder engagement regarding data privacy
Launch a public relations campaign to reassure customers about the company's commitment to data security without making any substantial changes to internal processes or governance structures
Focus solely on complying with relevant data protection regulations, such as GDPR and CCPA, without addressing broader social responsibility considerations related to data privacy
Delegate responsibility for data privacy to the IT department without involving other departments or stakeholders in the decision-making process

Preparing for ISO 27001:2022 Internal Auditor? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free