Developers: | Corp Soft (CorpSoft24) |
Date of the premiere of the system: | 2014 |
Technology: | IaaS - Infrastructure as service, Virtualization, cybersecurity - Antiviruses, the Firewall, cybersecurity - Backup and data storage, cybersecurity - the Fraud detection system (fraud) |
Hosting ISPDN is a complex service in placement of a personal data information system (ISPDN) in protected to cloud infrastructure and providing a compliance with regulatory requirements to processing and protection of PDN.
The service Hosting ISPDN has modular structure thanks to what, it can be easily configured and scaled depending on category, quantity and accessory of the processed personal data and the required security level (SL).
Service modules Hosting of ISPDN (data for September, 2018):
- the Protected IT infrastructure (IaaS)
- the Certified information security tools (IST)
- Organizational and Administrative Documentation (OAD), design, certification
MODULE 1 IS THE PROTECTED IT INFRASTRUCTURE (IAAS):
- Data processing center of level of reliability of Tier-3;
- Physical security and access control;
- The protected data network;
- The protected storage area network;
- Failsafe server hardware;
- The protected virtualization platform;
- The protected operating system;
MODULE 2 – THE CERTIFIED INFORMATION SECURITY TOOLS (IST):
- Means of the firewalling (F);
- Means of the cryptographic information protection transferred on open communication links (CIPF);
- Means of protecting of the environment of virtualization (ZSV);
- Means of protecting from unauthorized prosperity (the information security facility from NSD);
- Means of antivirus protection (AVZ);
- Means of the analysis of security and search of vulnerabilities (ANZ);
- Sensor of Invasions (SI);
- Means of backup and recovery;
MODULE 3 IS THE ORGANIZATIONAL AND ADMINISTRATIVE DOCUMENTATION (OAD), DESIGN, CERTIFICATION:
- Inspection ISPDN;
- Private model of threats on segment ISPDN;
- Templates of the organizational and administrative documentation (OAD);
- Audit of processing of personal data;
- Classification ISPDN;
- Development of model of threats;
- Development of a set of ORD;
- Development of terms of reference on the system of personal data protection (SZ PDN);
- Development of the project documentation on SZ PDN
- Implementation of SZ PDN;
- Certification ISPDN (technical data sheet of a system, PMI, evaluation tests, acts, protocols, certificate);
hosting ISPDN allows to implement the following functionality / to solve problems:
- Personal data protection on the website;
- Personal account of the user;
- MIS and telemedicine;
- Loyalty program;
- E-mail/ SMS- notifications;
- CRM system;
- Direct marketing;
- Delivery/return of goods;
- Omnichannel sales;
- Organization of accounting and personnel records;