Dr. Alan Tang has extensive experience devoted to privacy and security practices. Dr. Tang specializes in establishing and operationalizing risk-based and actionable privacy frameworks and programs in developing and implement emerging technologies such as AI, Blockchain, Big Data, IoT, etc. in alignment with global regulations and standards such as GDPR, CCPA/CPRA, PIPEDA, PIPL, LGPD, GAPP, ISO 27701, and NIST PF, etc. He believes in simplifying, automating, and scaling security and privacy measure to enable business growth. Dr. Tang has firsthand experience in implementing an enterprise-wide, unified privacy and security framework and program for a Fortune 50 international company. The security and privacy framework has been implemented in 50+ countries through three phases. He has a strong history of working with business leaders in a wide range of security and privacy-related domains such as security assessment, PIA and DPIA, security and privacy policies and procedures, security and privacy-by-design in SDLC, data retention and deletion, data disclosure and sharing, data cross-border transfer, privacy enhancing technologies, awareness training, data breach handling, etc. Aiming to help organizations to design and implement an actionable privacy framework, Dr. Tang published his first book titled “Privacy in Practice- Establish and Operationalize a Holistic Data Privacy Program” in 2023, which was well received by readers. Dr. Tang holds a Ph.D. degree in Information Security and an MBA degree. Alan also holds numerous privacy and security designations including FIP, CIPP/E/US/C/A, CIPM, CIPT, CISSP, CISA, PMP, and previously ISO27001LA and PCI DSS QSA.
In our rapidly evolving digital society, safeguarding personal data has never been more crucial. With big data permeating every sector, it is essential for businesses to recognize this challenge as a strategic priority. In this landscape, Tang's book emerges as a standout resource among countless offerings. I want to emphasize my deep appreciation for this insightful work, which clearly outlines practices tailored to our current needs. I strongly encourage all our colleagues to read it's a must-have guide for navigating the complexities of data protection today. A well-structured data privacy program serves as both a legal obligation and a strategic asset for organizations. It is instrumental in safeguarding customer trust, enhancing security measures, ensuring compliance with regulations, and bolstering the organization's overall reputation. In a climate where data is increasingly valuable, organizations that prioritize data privacy are more likely to succeed. Conversely, those that neglect this critical aspect may encounter significant legal, financial, and reputational risks. Emphasizing data privacy is not merely advisable; it is essential for achieving sustainable business success. This book is designed to assist organizations in establishing a cohesive and integrated enterprise-wide privacy program. It provides guidance for business units in delivering privacy protection, maintaining privacy integrity, and implementing appropriate protective measures throughout product development. The objectives of this book are as follows: - Align Privacy with Business Strategies: Facilitate the alignment of the privacy program with the overarching goals and strategies of the organization, demonstrating how privacy initiatives can effectively support business objectives. Extend the Reach of the Privacy Program: Encourage the expansion of the privacy program beyond the confines of the privacy team or specific organizational functions, thus promoting a holistic approach to privacy management. Clarify Legal Terminology: Convert complex legal language and convoluted text into clear and essential requirements that organizations can readily adopt and implement. Engage with Business Departments: Foster collaboration with various business units to comprehend privacy within the organization’s specific context, establishing an environment that promotes shared responsibility for privacy. Identify and Address Program Gaps: Systematically identify and prioritize initiatives that address deficiencies within the privacy program, leading to the establishment of a practical and actionable roadmap for implementation. Leverage Privacy as a Strategic Asset: Advocate for the perception of privacy as a competitive differentiator that enhances the efficiency of customer data management and innovation, rather than as an impediment. Integrate Privacy into Daily Operations: Promote awareness and ensure that privacy considerations are embedded into the routine operations of the organization and its personnel. This text serves as a comprehensive resource for enhancing your organization’s privacy practices, emphasizing the critical role of privacy in fostering trust and driving business success. In today’s digital society, we understand how important it is to protect personal data. As big data influences every sector, it can feel overwhelming for businesses to address this challenge. That's why Tang's book is such a valuable resource. It offers clear guidance on practices that resonate with our current needs. I genuinely encourage all our colleagues to read it; it could be a crucial step in helping us navigate the complexities of data protection together. This work provides exceptional and practical information that is simply unmatched. Assoc. Prof. Sezer Bozkus Kahyaoglu Izmir Bakircay University, Türkiye