regulation-2016-679-of-27-april-2016 Piergiorgio Venuti

Almost ready for the GDPR

regulation-2016-679-of-27-april-2016

The 2016-679 regulation of 27 April 2016 will apply in all Member States from 25 May 2018, within which the companies will have to comply with the new Privacy Act.

As activities related to privacy advice and specifically in relation to the minimum security measures that must be prepared following the Gap Analysis and Privacy Assessment, the Secure Online Desktop offers the following services.

 

Our services for the regulation-2016-679-of-27-april-2016

   ♦ GDPR CONSULTING

      It is the consulting activity for the adaptation to the new 2016-679 privacy regulation. Find out more.

 

   ♦ PRIVACY ASSESSMENT

      It is one of the first activities within the GDPR consulting projects aimed at “photographing” the current state of the company on the topic of Privacy. Find out more.

 

   ♦ VULNERABIITY ASSESSMENT & PENETRATION TEST

      The activities of the Vulnerability Assessment and Penetration Test are aimed at assessing the level of IT security of an IT infrastructure. Find out more.

 

   ♦ PRIVACY TRAINING

 

      The training of persons in charge of processing personal data, in addition to constituting a legal obligation, is one of the most effective security measures to protect the same data. In fact, training is essential for logical and physical security measures, as well as policies and procedures adopted by companies, to find concrete and conscious application in daily practice.

The courses are delivered in the classroom directly at the customer, and are designed and maintained by Privacy Officer and teachers who are experts in personal data security and organization.

All our courses are highly practical and are carried out through a constant interaction between teacher and participants, with the aim not only to make the fundamental principles of the law known, but also and above all to increase the participants’ awareness on safety measures from adopt and on the behavioral guidelines for the correct use of company tools. Find out more.

 

   ♦ LOG MANAGEMENT

      The collection, aggregation and secure storage of logs are some of the activities to be considered in the process of adaptation to the GDPR. Find out more.

 

   ♦ AUDIT MANAGEMENT

      Our Audit Management system verifies the access of “privileged” users to remote servers, prevents unauthorized behavior, records activities in searchable video sessions and generates compliance and support reports.

 

   ♦ STRONG AUTHENTICATION

 

   ♦ ENCRYPTION

 

   ♦ BACKUP ON CLOUD

      Data resilience, backup and threat protection are fundamental aspects of the new 2016-679 Regulation of 27 April 2016. Find out more.

 

The Secure Online Desktop primarily has put in place the appropriate measures to comply with the adaptation in order to protect the privacy of its users.

[btnsx id=”2931″]

USEFUL LINKS:

Privacy

Public Cloud

New European regulation (GDPR)

Cloud Provider Reggio Emilia

Introducing a set of new GDPR tools

IaaS | Cloud | Infrastructure as a Service

Share


RSS

More Articles…

Categories …

Tags

RSS Unknown Feed

RSS Full Disclosure

  • User Enumeration in IServ Schoolserver Web Login September 11, 2025
    Posted by naphthalin via Fulldisclosure on Sep 10“I know where your children go to school.” The web front end of the IServ school server from IServ GmbH allows user enumeration. Responses during failed login attempts differ, depending on if the user account exists, does not exist and other conditions. While this does not pose a […]
  • Re: Apple’s A17 Pro Chip: Critical Flaw Causes Dual Subsystem Failure & Forensic Log Loss September 11, 2025
    Posted by Matthew Fernandez on Sep 10Can you elaborate on why you consider this high severity? From the description, it sounds as if this behaviour is fail-closed. That is, the effects are limited to DoS, with security properties preserved.
  • Defense in depth -- the Microsoft way (part 92): more stupid blunders of Windows' File Explorer September 8, 2025
    Posted by Stefan Kanthak via Fulldisclosure on Sep 08Hi @ll, this extends the two previous posts titled Defense in depth -- the Microsoft way (part 90): "Digital Signature" property sheet missing without "Read Extended Attributes" access permission and Defense in depth -- the Microsoft way (part 91): yet another 30 year old bug of the […]
  • Critical Security Report – Remote Code Execution via Persistent Discord WebRTC Automation September 8, 2025
    Posted by Taylor Newsome on Sep 08Reporter: [Taylor Christian Newsome / SleepRaps () gmail com] Date: [8/21/2025] Target: Discord WebRTC / Voice Gateway API Severity: Critical 1. Executive Summary A proof-of-concept (PersistentRTC) demonstrates remote code execution (RCE) capability against Discord users. The PoC enables Arbitrary JavaScript execution in a victim’s browser context via WebRTC automation. […]
  • Submission of Critical Firmware Parameters – PCIe HCA Cards September 8, 2025
    Posted by Taylor Newsome on Sep 08*To:* support () mellanox com, networking-support () nvidia com *From:* Taylor Christian Newsome *Date:* August 20, 2025 *Dear Mellanox/NVIDIA Networking Support Team,* I am writing to formally submit the critical firmware parameters for Mellanox PCI Express Host Channel Adapter (HCA) cards, as detailed in the official documentation available here: […]
  • SEC Consult SA-20250908-0 :: NFC Card Vulnerability Exploitation Leading to Free Top-Up in KioSoft "Stored Value" Unattended Payment Solution (Mifare) September 8, 2025
    Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Sep 08SEC Consult Vulnerability Lab Security Advisory < 20250908-0 > ======================================================================= title: NFC Card Vulnerability Exploitation Leading to Free Top-Up product: KioSoft "Stored Value" Unattended Payment Solution (Mifare) vulnerable version: Current firmware/hardware as of Q2/2025 fixed version: No version numbers available CVE number:...
  • FFmpeg 7.0+ Integer Overflow in FFmpeg cache: Protocol (CacheEntry::size) September 8, 2025
    Posted by Ron E on Sep 08An integer overflow vulnerability exists in the FFmpeg cache: URL protocol implementation. The CacheEntry structure uses a 32-bit signed integer to store cache entry sizes (int size), but the cache layer can accumulate cached data exceeding 2 GB. Once entry->size grows beyond INT_MAX and new data is appended, an […]
  • FFmpeg 7.0+ Integer Overflow in DSCP Option Handling of FFmpeg UDP Protocol September 8, 2025
    Posted by Ron E on Sep 08A vulnerability exists in the FFmpeg UDP protocol implementation ( libavformat/udp.c) where the dscp parameter is parsed from a URI and left-shifted without bounds checking. Supplying a maximum 32-bit signed integer (2147483647) triggers undefined behavior due to a left shift that exceeds the representable range of int. This results […]
  • FFmpeg 7.0+ Integer Overflow in UDP Protocol Handler (fifo_size option) September 8, 2025
    Posted by Ron E on Sep 08A signed integer overflow exists in FFmpeg’s udp.c implementation when parsing the fifo_size option from a user-supplied UDP URL. The overflow occurs during multiplication, which is used to compute the size of the circular receive buffer. This can result in undefined behavior, allocation failures, or potentially memory corruption depending […]
  • FFmpeg 7.0+ LADSPA Filter Arbitrary Shared Object Loading via Unsanitized Environment Variables September 8, 2025
    Posted by Ron E on Sep 08The ladspa audio filter implementation (libavfilter/af_ladspa.c) in FFmpeg allows unsanitized environment variables to influence dynamic library loading. Specifically, the filter uses getenv("LADSPA_PATH") and getenv("HOME") when resolving the plugin shared object (.so) name provided through the file option. These values are concatenated into a filesystem path and passed directly into […]

Customers

Newsletter

{subscription_form_1}