Trust Center
Comprehensive information about our security practices, compliance, and commitment to protecting your data
Security & Compliance
Our Approach to ISO 27001
We apply ISO 27001 information security management principles in how we operate, and help clients implement ISO 27001 themselves. Cyber Security Finland does not hold ISO 27001 certification as an organization.
GDPR
As a company processing personal data in the EU, we are subject to GDPR and maintain data protection policies accordingly.
Data Protection Practices
✓ Data Minimization
We aim to collect only the data necessary to provide our services.
✓ Encrypted Transmission
Our website and client-facing systems use TLS/SSL encryption in transit.
✓ Access Controls
Access to client data is limited to authorized personnel.
✓ Incident Handling
We have a process for handling and reporting security incidents. Contact us for details relevant to your engagement.
Standards We Work With
ISO 27001 - Information Security Management
GDPR - General Data Protection Regulation
NIS2 - Network and Information Systems Security Directive
CRA - Cyber Resilience Act
DORA - Digital Operational Resilience Act
Privacy & Transparency
Privacy Policy
Our privacy policy outlines how we collect, use, and protect personal data in compliance with GDPR and other regulations.
Read our Privacy PolicyData Processing Agreement (DPA)
We can provide a Data Processing Agreement for clients requiring formal documentation of our data handling practices.
Request a DPATransparency Reports
We are committed to transparency in our operations and security practices. For questions, please contact us.
Contact UsQuestions About Security & Trust?
If you have concerns about our security practices or need detailed information about compliance certifications: