PogoWasRight.org

Menu
  • About
  • Privacy
Menu

NIST Releases Updated Privacy Framework

Posted on April 30, 2025 by Dissent

Seen at Hunton Andrews Kurth’s Privacy & Information Security Law Blog:

On April 14, 2025, the National Institute of Standards and Technology (“NIST”) announced the release of a draft update to its voluntary Privacy Framework, “NIST Privacy Framework 1.1 Initial Public Draft” (“PFW 1.1”). The update is designed to address current privacy risk management needs, enhance usability, and align the Privacy Framework with version 2.0 of the NIST Cybersecurity Framework (“CSF”), which was released in February 2024.

The updated Privacy Framework includes the following key changes:

  • Revised Core Structure and Content: The Core section has been revised to align with the updated CSF, with a focus specific functions such as governance (i.e., risk management strategy and policies).
  • New AI and Privacy Risk Management Section: PFW 1.1 includes a new section that describes how AI tools relate to privacy risks, such as the potential (1) that an AI system could reveal information about individuals through data reconstruction, prompt injection, or membership interference; or (2) for systemic, computational, statistical and human biases that make important decisions and predictions about individuals.
  • Interactive Online Guidelines: Previously, NIST embedded a guide to the Privacy Framework as Section 3 within the previous version. As part of the update, NIST published a standalone online guide.

NIST has invited stakeholder feedback on PFW 1.1 until June 13, 2025.

Related posts:

  • On Privacy and Cloud Computing Challenges
  • Fifteen More Smart Grid Privacy Concerns
  • Department of Commerce Launches Collaborative Privacy Framework Effort
Category: AnnouncementsGovtMisc

Post navigation

← Car Subscription Features Raise Your Risk of Government Surveillance, Police Records Show
Google warns of data security risks if Chrome is sold off →

Search

Contact Me

Email: info[at]pogowasright.org
Security Issue: security[at]pogowasright.org
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: Dissent.73
DMCA Concern: dmca[at]pogowasright.org

Research Report of Note

A report by EPIC.org:

State Attorneys General & Privacy: Enforcement Trends, 2020-2024

Categories

Recent Posts

  • U.S. Plans to Scrutinize Foreign Tourists’ Social Media History
  • ANNOUNCEMENT: EFF Launches Age Verification Hub as Resource Against Misguided Laws
  • FTC Denies Petition from SpyFone App CEO to Vacate 2021 Order
  • Privacy concerns raised as Grok AI found to be a stalker’s best friend
  • PRIVACY—S.D. Cal.: Employee did not waive privacy right in personal email data on company provided laptop, (Dec 5, 2025)
  • EU justice chief draws red line on privacy reforms
  • Kaiser Permanente to Pay Up to $47.5M in Web Tracker Lawsuit

RSS Recent Posts at DataBreaches.net

  • Village of Golf Manor considering paying ransom amid cyberattack (1)
  • Teen who allegedly stole millions of personal data records arrested in Spain
  • Akira ransomware: FBI tallies 250 million in payouts
  • IE: HSE confirms second ransomware attack but ‘no evidence’ patient data was stolen
  • Examining impact of federal relief program after major healthcare cyberattack — Research Brief
©2025 PogoWasRight.org. All rights reserved.