I wrote a short blog post on rationalizing existing compliance controls like the PCI DSS and NIST regulations to meet GDPR obligations. Thinking of expanding the post and adding a compliance control matrix to include other standards like ISO and HITRUST.
Any suggestions for that matrix or feedback on the post would be appreciated.
https://tokenex.com/utilizing-the-pci-dss-and-nist-regulations-to-prepare-for-the-gdpr/
Regards,
John Noltensmeyer, CIPP/E, CIPM, CISSP, ISA
Privacy and Compliance Solutions Architect
jnoltensmeyer@tokenex.com
Phone: (202) 431-9829