Skip to main content

Comitas

Contact form

Book a non-binding appointment with

CEO Comitas

Jürgen Astl

/CEO

Contact

We are available between 8:00 and 18:00 and will get back to you as soon as possible. Find answers to your questions!

[Competencies /
IT security

Our IT security compliance

At Comitas, we place great importance on the security and confidentiality of our and your data and systems. We strive to maintain a robust IT security infrastructure to protect ourselves against cyber threats and ensure the integrity of our operations.

Security as a mindset

For us, security is not just a priority; it's a mindset ingrained in everything we do. We continuously evaluate and improve our security practices to stay ahead of emerging threats and comply with evolving regulatory requirements. By investing in certified professionals and adhering to international standards such as ISO 27001, we demonstrate our unwavering commitment to maintaining the highest standards in IT security.

Your trust, our priority

We recognize that trust is earned through transparency, diligence, and accountability. Rest assured that protecting your data and ensuring the confidentiality of your information are among our highest priorities. Your trust is important to us, and we are fully committed to maintaining it through our dedication to excellence in IT security.

ISO 27001 certification

The cornerstone of our IT security policy is our ISO 27001 certification. This internationally recognized standard defines requirements for establishing, implementing, maintaining, and continuously improving an Information Security Management System (ISMS). Achieving ISO 27001 certification demonstrates our commitment to the systematic management of information security risks and the protection of sensitive data.

Certified ICT security expert

The cornerstone of our IT security policy is our ISO 27001 certification. This internationally recognized standard defines requirements for establishing, implementing, maintaining, and continuously improving an Information Security Management System (ISMS). Achieving ISO 27001 certification demonstrates our commitment to the systematic management of information security risks and the protection of sensitive data.

What does an ISO 27001 certification include?

Identification and management of risks

We proactively identify and manage risks to your data. Through thorough risk assessments in accordance with guidelines, we identify vulnerabilities and quickly take measures to mitigate them, protecting your information from potential threats.

Access control measures

We implement strict access control measures to ensure that only authorized individuals can access your data. This reduces the risk of unauthorized disclosure or misuse and guarantees the integrity and confidentiality of your information.

Clear safety guidelines and procedures

We establish clear and robust security policies and procedures that meet the requirements. These policies govern the handling of sensitive information and ensure that your data is safe and secure at all times.

Building a secure infrastructure

We invest in building a secure infrastructure that adheres to specifications. From physical security measures to state-of-the-art security protocols, we ensure that your data is stored and transmitted securely, minimizing the risk of unauthorized access or security breaches.

Certified expert monitoring

We employ certified ICT security experts to monitor our IT security initiatives and ensure they meet industry standards. These experts bring extensive experience in designing, implementing, and monitoring effective security measures and guarantee the resilience of our IT infrastructure against evolving cyber threats.

Safety training and awareness

We conduct regular security training and awareness programs for our employees, as required by regulations. This ensures that our employees understand their roles and responsibilities in the area of ​​information security and contribute to improving our overall data protection measures.

Secure data encryption

We use encryption technologies to protect your data both during transmission and while stored. This ensures that your sensitive information remains confidential and secure, minimizing the risk of unauthorized access or interception.

Continuous monitoring and improvement

We continuously monitor our security measures to stay abreast of emerging threats. Through regular evaluations, audits, and updates, we ensure that your data is protected against evolving cyber risks, and that you can rely on it.

Supplier safety assessment

We conduct security assessments of our suppliers and third-party providers to ensure they meet the same high security standards. This minimizes the risk of data breaches by third parties and guarantees the security of your information at every touchpoint.

Business continuity and disaster recovery planning

We have established business continuity and disaster recovery plans to ensure the continuous availability of your data and to minimize downtime or loss of service.

Incident Response and Management

We have established incident response and management procedures to react quickly and effectively in the event of a security incident or breach, to minimize the impact on your data and ensure the continuity of service.

Regulatory compliance

We ensure compliance with relevant data protection regulations and legal requirements to protect your data in accordance with the highest industry standards and to maintain your trust in our services.

Regular safety audits and checks

We conduct regular security audits and reviews of our systems and processes to ensure continuous compliance with security guidelines and to identify opportunities for improvement to strengthen the protection of your data.