Check of an information system of personal data processing (ISPDN) of NPO Leader is complete
| Customers: The leader - a money transfer system of NPO
Contractors: Oberon Product: Projects of external audit of IT and security (in tch PCI DSS and SUIB)Project date: 2011/08
|
The Oberon company announced completion of check of an information system of personal data processing (ISPDN) by NKO Leader Ltd on compliance to requirements of the legislation of the Russian Federation in the field of protection of PDN and the industry standard of the Bank of Russia.
Within audit conformity assessment of organizational and administrative documentation of the enterprise to requirements of the legislation in the field of personal data protection is carried out, the model of threats and the violator's model are developed. Based on audit by cybersecurity department of NKO Leader Ltd with the assistance of specialists of Oberon a number of the organizational actions directed to remedial action of a system is executed. The subsequent check of the company from Roskomnadzor did not reveal any violation or mismatch of an information system to requirements of the legislation.
"In implementation process of the project on an information security audit our company – the certified auditor of ABISS - relies on regulating documents and requirements of the Bank of Russia – the main regulator for banking and credit institutions. This project showed that strict fulfillment of requirements of service station of BR IBBS and understanding of logic of the legislation in the field of personal data is quite enough to create the system which is completely satisfying regulators", – Andrey Volkov, the director of the department of information security of Oberon company said.
