Fifth: Enroll the big stakeholders in self-regulatory programs. This is basically an attempt to get the major Web and tech companies to abide by a common set of privacy guidelines that both regulators and the public can use to judge the companies' behavior. The FTC says that it will "view adherence to such codes favorably in connection with its law enforcement work" and that it will "also continue to enforce the FTC Act to take action against companies that engage in unfair or deceptive practices, including the failure to abide by self-regulatory programs they join." In other words, the self-regulatory programs are voluntary, but if you sign up for them you'd better comply with them or the FTC will have grounds to go after you for deceptive practices.
If you really want to plow through the whole report, you can access it on the FTC website here: http://www.ftc.gov/opa/2012/03/privacyframework.shtm
Sign up for CIO Asia eNewsletters.