Customers: Metallurgical Commercial Bank (Metcombank) Moscow; Financial services, investments and audit Contractors: A-security (A-security guard) Product: Projects of external audit of IT and security (in tch PCI DSS and SUIB)Project date: 2015/05 - 2015/09
|
On November 3, 2015 the A-security company announced completion of audit in JSC Metcombank on compliance to requirements of the legislation in information security field (cybersecurity).
Project Tasks
Feature of the project in development of an end-to-end system of the protection which is at the same time meeting requirements of the Federal law "About Personal Data" and Provision of Bank of Russia No. 382-P in the conditions of the maximum use of the existing measures of protection of bank.
Metcombank branch (2013)
Project Progress
Specialists of the companies carried out audit within three months in two steps:
- at the first stage audit of an order of processing and personal data protection is booked,
- at the second stage - conformity assessment to requirements of Provision of the Bank of Russia No. 382-P.
Project Results
According to the results of works Metcombank reached a full compliance to requirements of the Federal law "About Personal Data" in an organizational part and received the report on the current conformity assessment of bank to requirements of Provision of the Bank of Russia No. 382-P.
At a final stage specialists of A-security developed the concept of upgrade of an end-to-end system of information security.
Sergey Voronkov, the head of department of security of Metcombank, noted: "Thanks to joint work with specialists of A-security we managed to receive objective assessment of a status of cybersecurity of bank, to optimize internal processes on providing Information Security and to make the plan for remedial action. The received results of conformity assessment are sent to the Bank of Russia".
"We hope that experience of specialists of A-security will allow Metcombank to improve the information security system, to minimize risks and to completely fulfill the requirements of the legislation. All this will promote the customer service delivery of bank at the highest level of security. We are grateful to Metcombank for the put trust confirming qualification of our specialists regarding creation of end-to-end systems of protection", - Mihail Aronson, the board member of A-security said.