ISO/IEC 27701 is an extension of ISO/IEC 27001 for managing personal data privacy. It specifies requirements for a Privacy Information Management System (PIMS) to help organizations implement controls for privacy regulations like GDPR.
ISO/IEC 27701 provides a framework for managing personal data that applies to both data controllers and processors. Certification demonstrates an audited approach to privacy controls and compliance.
SITE Cloud has achieved ISO/IEC 27701 certification for its privacy information management system.
The SITE Cloud ISO/IEC 27701 certificate validates compliance with privacy controls.
Clients can leverage SITE Cloud's ISO/IEC 27701 certification to support regulatory compliance for workloads involving personal data.
The SITE Cloud ISO/IEC 27701 certification applies to the following in-scope cloud services:
ISO/IEC 27701 provides a universal framework of privacy controls that can be mapped to requirements for regulations like GDPR and CCPA. This allows for efficient implementation and audit of regulatory compliance.
Certificates can be requested through the SITE Cloud Support Portal.
Yes, SITE Cloud's certification helps demonstrate compliance for client workloads involving personal data on the Cloud. However, clients maintain responsibility for compliance of their implementation.