Should privacy impact assessments be mandatory?

Privacy impact assessments should be integrated into the overall approach to risk management with other strategic planning instruments. This article considers the issue of whether privacy impact assessments (PIAs) should be mandatory. I will examine the benefits and disadvantages of PIAs, the case for and against mandatory PIAs, and ultimately conclude they should be mandatory. Even if they are made mandatory, however, other factors, such as independent audits, must be taken into account to make them truly effective.