Information security and data protection Articles

Meeting NIS-2 Directives with ISO 27001 – How Companies Should Now Take a Strategic Approach

Meeting NIS-2 Directives with ISO 27001 – How Companies Should Now Take a Strategic Approach The EU's new NIS-2 Directive raises cybersecurity requirements to an entirely new level. From October 2024, significantly more companies will have to meet strict requirements...

Establishing a Data-Driven Corporate Culture – Approaches and Challenges

Establishing a Data-Driven Corporate Culture - Approaches and Challenges In today's business world, it's no longer enough to merely collect and analyze data – it must also be embraced. Companies aiming to make informed decisions and gain competitive advantages from...

Data protection impact assessment (DPIA) – when and how it should be carried out

Data protection impact assessment (DPIA) - when and how it should be carried out The introduction of the General Data Protection Regulation (GDPR) has fundamentally changed the legal framework for companies when handling personal data. One of the key changes is the...

Zero Trust Security: A New Paradigm for Corporate Security

Basic Principles of the Zero Trust model Zero Trust is based on several key principles: Explicit verification Each access is checked on the basis of several criteria: Identity, device status, location, time of day, role profile, etc. Access is only granted if all...