This document discusses creating a privacy culture within organizations and their technology. It notes the dual responsibilities of being open to the public while also protecting personal privacy. It recommends designing technology and policies with both goals in mind. Additionally, it suggests making policies readable, offering amnesty periods for reporting issues, involving diverse groups including young employees, and educating all employees on privacy and security.