RSS
Логотип
Баннер в шапке 1
Баннер в шапке 2
Project

The Vozrozhdeniye bank underwent the annual procedure of verification of requirements of compliance to the standard

Customers: Renaissance bank

Moscow; Financial services, investments and audit

Contractors: Informzashita
Product: Projects of external audit of IT and security (in tch PCI DSS and SUIB)

Project date: 2013/03  - 2013/04

Specialists of Informzashita company carried out conformity assessment of information security of Vozrozhdeniye bank to requirements of the standard of service station of BR IBBS-1.0-2010, including requirements of the legislation of the Russian Federation in the field of personal data

In December, 2010 the works on carrying out external conformity assessment of information security of bank of Renaissance to requirements of the standard of the Bank of Russia of service station of BR IBBS-1.0-2010, including check of a compliance with regulatory requirements of the Russian Federation in the field of personal data were completed. For work the Informzashita company having rich practical experience of works on personal data protection, conformity assessments of banking information systems to different standards in the field of information security support, and consisting in community ABISS was selected.

Within the project specialists of Informzashita company made conformity assessment of information security of central office and a number of bank branches to requirements of the standard of service station of BR IBBS-1.0-2010, performed check of a compliance with regulatory requirements of the Russian Federation in the field of personal data, prepared the conclusion and the report on results of the performed works.

Based on the carried-out works the level of compliance of information security of Vozrozhdeniye bank to requirements of service station of BR IBBS-1.0 was recognized corresponding to the fourth level (on a scale from 0 to 5) which is the recommended Bank of Russia according to a technique of assessment of service station of BR IBBS-1.2-2010 for the organizations of a banking system of the Russian Federation. Also according to the results of assessment confirmation of conformity of Vozrozhdeniye bank to requirements of the standard of service station of IBBS-1.0-2010, including statutory requirements for processing and security of personal data was created for mailing to the corresponding regulators.

"During the course of performance the project with Vozrozhdeniye bank our company got unique experience on external conformity assessment of the organization of a banking system of the Russian Federation of the new version of the standard of service station of BR IBBS. It is necessary to recognize that now the standard of the Bank of Russia is the most informative and deep in comparison with other standards in information security field. Owing to a wide scope and for receiving objective conformity assessment to requirements of the standard of ours of the companies a lot of work was carried out. Throughout all project the specialists of Vozrozhdeniye bank who were taking part in assessment procedure showed high professionalism and also the high level of the organization of process of external assessment from bank" — Sherstobitov Sergey, the deputy commercial director of Informzashita company commented.

2013. Conforms to requirements

According to requirements of controlling organization, PCI Security Standards Council, check of compliance to requirements of the standard is obligatory to carrying out annually. The bank confirmed the compliance to these requirements, and the Informzashita company completed the project on support of Wednesday of processing of payment cards of bank.

"Projects on support of compliance to requirements of the PCI DSS standard, on the one hand, have for us rather typical character, – Lev Fisenko, the director of the department of work with financial institutions of Informzashita company commented on an event. – With another – even this typicality did not prevent employees of the bank to show the professionalism and responsibility. There is a wish to note separately efficiency of colleagues in adoption of important solutions. And the actual, but not nominal intention to ensure the maximum safety of the clients".
"The number of active holders of cards of bank constantly increases, - Andrey Gritsiyenko, the chief of Information Security Service of Vozrozhdeniye bank commented. – Now their number makes 1.4 million. For involvement of new clients it is insufficiently simple to conform to the standard, it is necessary to provide the valid protection. Colleagues from Informzashita company completely separate our approach and help to implement it even in standard projects".