Site icon RoboForm Blog

RoboForm GDPR Compliance Statement

Introduction

In 2016, the EU adopted General Data Protection Regulation (“GDPR”). The GDPR is now recognized as law across the EU. GDPR enforcement begins on 25th May 2018.

Our Commitment

Siber Systems Inc. (‘we’ or ‘us’ or ‘our’) are committed to ensuring the security and protection of the personal information that we process, and to provide a compliant and consistent approach to data protection. We have always had a robust and effective data protection program in place which complies with existing law and abides by the data protection principles. However, we recognize our obligations in continuously updating and expanding this program to keep meet the demands of the GDPR.

Siber Systems Inc. are dedicated to safeguarding the personal information under our remit and in developing a data protection regime that is effective, fit for purpose and demonstrates an understanding of, and appreciation for the new Regulation. Our preparation and details of GDPR compliance have been summarised in this statement and include the development and implementation of data protection roles, policies, procedures, controls and measures to ensure maximum and ongoing compliance.

How We Have Prepared for the GDPR

Siber Systems Inc. has a consistent level of data protection and security across our organization, that fully complies with all DGPR provisions.

Our preparations included:

Data Subject Rights

In addition to the policies and procedures mentioned above that ensure individuals can enforce their data protection rights, we provide easy to access information via email gdpr@siber.com of an individual’s right to access any personal information that Siber Systems Inc. processes about them and to request information about:

Information Security & Technical and Organizational Measures

Siber Systems Inc. takes the privacy and security of individuals and their personal information very seriously and takes every reasonable measure and precaution to protect and secure the personal data that we process. We have robust information security policies and procedures in place to protect personal information from unauthorized access, alteration, disclosure or destruction and have several layers of security measures, including employee training, data encryption in transit, data encryption in storage, password policy, one-time-password and two-factor authentication mechanisms, as well as other technical and organizational prevention, detective, and correction controls.

GDPR Roles and Employees

Siber Systems Inc. have appointed a data privacy team to constantly monitor compliance with the GDPR legislation. The team are responsible for promoting awareness of the GDPR across the organization, assessing our GDPR readiness, identifying any potential gap areas and implementing the new policies, procedures and corrective measures.

Siber Systems Inc. understands that continuous employee awareness and understanding is vital to the continued compliance of the GDPR and have involved our employees in our preparation plans. We have implemented an employee training program specific to the which have been provided to all employees, and forms part of our induction and annual training program.

If you have any questions or requests related to GDPR, please contact our GDPR compliance team via email gdpr@siber.com.

Exit mobile version