This paper presents a framework designed to assist enterprises in implementing a forensic readiness capability for information privacy incidents.In particular, the framework provides guidance for specifying high-level policies, business processes and organizational functions, and for determining the device-level forensic procedures, standards and processes required to handle information privacy incidents.