Hello, you are using an old browser that's unsafe and no longer supported. Please consider updating your browser to a newer version, or downloading a modern browser.

Global Accelerated Learning • Est. 1999
Glossary Term Personally Identifiable Information (PII)

Training Camp • Cybersecurity Glossary

What is Personally Identifiable Information (PII)?

Personally identifiable information (PII) is any data that can identify, contact, or locate an individual, alone or combined with other sources; protected by GDPR and HIPAA.

Glossary > AI Security & Data Privacy > Personally Identifiable Information (PII)

Understanding Personally Identifiable Information (PII)

Any data about a human being that could be used to identify that person. PII encompasses any information that can be used to identify, contact, or locate an individual, either alone or combined with other readily accessible sources. It includes direct identifiers like names and ID numbers, and indirect identifiers that could be combined to identify individuals. PII is subject to protection requirements in numerous regulations, including GDPR, CCPA, and HIPAA, and standards like ISO 27701. Organizations protect PII through classification, minimization, access controls, encryption, anonymization techniques, and privacy-by-design approaches. For example, a healthcare system might protect patient PII by implementing data classification, role-based access controls, field-level encryption of sensitive identifiers, data loss prevention systems, strict retention policies, and comprehensive audit logging of all access to PII. Related terms: Privacy, Personal data, Data protection, GDPR, Data minimization, De-identification, Privacy impact assessment, Data subject.

Learn More About Personally Identifiable Information (PII):

Ready to Get Certified?

Personally Identifiable Information (PII) is one of the topics you'll master in the CDPSE Boot Camp.

CDPSE Boot Camp →