Information security

Information security

Information security is important not only for software companies. Every organization, whether public or private, large or small, must ensure safe data management. As an organization, you want to protect all corporate and personal information carefully.

How can you do this effectively and demonstrably?

We test, inspect, certify and train your organization to handle information securely. This includes penetration testing, ISO 27001 and NEN 7510 certifications. You’ll stay up to date and compliant with the latest laws and regulations, while providing clients and customers the confidence that their data is safe.

Manage your information security risks

In a world of big data and online information, both consumers and companies want assurance that their data is secure. Risk management is essential for any organization. With ISO 27001 certification, you demonstrate that you take information management seriously, showing your customers, employees and partners that you are a reliable partner. The ISO 27001 standard provides a solid foundation for a structured approach.

Why Kiwa?

✓ One-stop-shop: services for OT, IT, and IoT under one roof

✓ Independent, objective assessments

✓ Expertise in laws and regulations

✓ Proven quality in testing, inspection, certification and training

✓ Forward-looking vision on cybersecurity

Our top information security services

ISO/IEC 27018 certification: Protection of Personally Identifiable Information (PII) in Public Cloud Environments

Organizations increasingly rely on public cloud environments to process personal data. This requires demonstrable and careful protection of personally identifiable information (PII). ISO/IEC 27018 is the international standard for cloud providers acting as PII processors and shows that privacy is structurally and transparently embedded. With ISO/IEC 27018 certification by Kiwa, you demonstrate that your cloud services comply with internationally recognized privacy principles.

Protection of Personally Identifiable Information (PII)
Contact

Learn more?

Would you like to know more about this topic? Call us at +31 (0)88 998 33 70 or fill out the contact form. Our experts will be happy to help you!

Go to contact form

The latest news about cybersecurity

View all the news

ISO 27001 and ISO 20000: from secure information to reliable service delivery

Organizations are investing heavily in information security. Rightly so, because cyber threats are increasing and customers expect their data and systems to be well protected. With ISO 27001, organizations can demonstrate that they take a systematic approach to information security and manage risks. But for customers, security is increasingly becoming a given. They also expect services to be reliable, predictable and consistently high in quality.

Two men in an office discussing a computer screen, with laptops, keyboard and workstations in a modern workspace.

NIS2 is in effect: can you demonstrate your organization is cyber resilient?

In recent years, NIS2 has mainly been about awareness, impact analyses and preparations. The phase has now begun in which organizations must not only make plans, but above all demonstrate that they’re actually implementing them. The question is no longer: ‘Do we need to do something with NIS2?’ but: ‘Can we demonstrate that we are managing our cyber risks?’.

Woman working at a desktop computer in a modern office, using a laptop and keyboard at a workstation.

Supply chain responsibility under NIS2: why managing your suppliers Is more important than ever

The NIS2 Directive introduces new requirements for organizations that must be able to demonstrate that their cybersecurity is under control. This goes beyond securing your own organization. Under NIS2, supply chain responsibility also plays a key role. Organizations must understand the cyber risks associated with suppliers, IT service providers, cloud providers and other supply chain partners, and take appropriate measures to manage those risks.

A person in a white shirt is setting up blue dominoes in a row on a table.

Strategic approach strengthens cybersecurity at Nij Smellinghe Hospital

Nij Smellinghe Hospital in Drachten places a strong emphasis on quality and safety and the field of information security and cybersecurity. What started with certification and audits has evolved into a strategic approach focused on continuous learning, joint thinking and ongoing improvement. In this video, employees of Nij Smellinghe explain how they experience the collaboration with Kiwa and what the strategic approach means in practice for healthcare, quality and cybersecurity.

Medical professionals