IT security solutions for compliance with legal requirements
In an increasingly connected world, cyber attacks pose a serious threat to enterprises and public authorities. For this reason, all sectors of the economy, be it the finance and insurance industry, the energy sector or the health sector, are subject to increased legal regulation of IT security and data protection.
Rohde & Schwarz Cybersecurity offers comprehensive solutions to protect your connected infrastructures against cyber threats. Our proactive hardware and software solutions support you in setting up technical measures to comply with legal standards such as
- the General Data Protection Regulation (GDPR),
- the Directive on security of network and information systems (NIS directive),
- the Payment Services Directive (PSD2),
- the Payment Card Industry Data Security Standard (PCI DSS)
- In Germany the Online Access Act (OZG).
Which legal requirements apply to providers of digital services, apps & data processing companies?
- As a provider of digital services such as online marketplaces, search engines and cloud computing services, you are obliged to comply with a certain IT security level. The latter must be in accordance with "the state of the art" technology. On top of that, you need to report incidents as required by § 8c BSI-Act (BSI is the Federal Office for Information Security in Germany).
- As a provider of so-called tele media services such as operators of websites or apps with online functions, you are obliged to take "IT security measures" in accordance with §13 section 7 Telemediengesetz (TMG).
- Data processing companies have the obligation to take IT security measures and standards and to report IT security incidents to supervisory authorities. This obligation arises from articles 31 and 32 of the General Data Protection Regulation (GDPR), which applies to every company that processes personal data. This is to establish a "risk-appropriate security level of the personal data processed" in the companies.