LEADER 03475nam 22005173 450 001 9911006899003321 005 20230929140850.0 010 $a9781523148554 010 $a1523148551 010 $a9781787783430 010 $a178778343X 035 $a(CKB)5590000000629883 035 $a(MiAaPQ)EBC6796444 035 $a(Au-PeEL)EBL6796444 035 $a(OCoLC)1282008841 035 $a(NjHacI)995590000000629883 035 $a(EXLCZ)995590000000629883 100 $a20211214d2021 uy 0 101 0 $aeng 135 $aurcnu|||||||| 181 $ctxt$2rdacontent 182 $cc$2rdamedia 183 $acr$2rdacarrier 200 14$aThe EU Data Protection Code of Conduct for Cloud Service Providers $eA Guide to Compliance 205 $a1st ed. 210 1$aEly :$cIT Governance Ltd,$d2021. 210 4$dİ2021. 215 $a1 online resource (54 pages) 311 08$a9781787783423 311 08$a1787783421 327 $aCover -- Title -- Copyright -- About the Author -- Contents -- Introduction -- Why should my organisation use the Code? -- Scope and structure of the Code -- Chapter 1: Data protection requirements -- 5.1 Terms and conditions of the Cloud services agreement -- 5.2 Processing personal data lawfully -- 5.3 Sub-processing -- 5.4 International transfers of customer's personal data -- 5.5 Right to audit -- 5.6 Liability -- 5.7 Cooperation with the customer -- 5.8 Records of processing -- 5.9 Data protection point of contact -- 5.10 Rights of the data subject -- 5.11 Cooperation with supervisory authorities -- 5.12 Confidentiality of the processing -- 5.13 Assistance with personal data breaches -- 5.14 Termination of the Cloud services agreement -- Chapter 2: Security requirements -- 6.1 General security requirements -- Chapter 3: Detailed security objectives -- Objective 1 - Management direction for information security -- Objective 2 - Organisation of information security -- Objective 3 - Human resources security -- Objective 4 - Asset management -- Objective 5 - Access controls -- Objective 6 - Encryption -- Objective 7 - Physical and environmental security -- Objective 8 - Operational security -- Objective 9 - Communications security -- Objective 10 - System development and maintenance -- Objective 11 - Suppliers -- Objective 12 - Information security incident management -- Objective 13 - Information security in business continuity -- Chapter 4: Transparency -- Chapter 5: Assessment and certification -- Initial assessment -- Ongoing assessment and monitoring -- Chapter 6: Conclusion -- Further reading. 330 $aThe EU Data Protection Code of Conduct for Cloud Service Providers provides guidance on how to implement the Code within your organisation, exploring the objectives of the Code and how compliance can be achieved with or without a pre-existing ISMS (information security management system) within the organisation. 517 $aEU Code of Conduct for Cloud Service Providers 606 $aCloud computing$xLaw and legislation 606 $aData protection$xLaw and legislation 615 0$aCloud computing$xLaw and legislation. 615 0$aData protection$xLaw and legislation. 676 $a343.0999 700 $aCalder$b Alan$01611549 801 0$bMiAaPQ 801 1$bMiAaPQ 801 2$bMiAaPQ 906 $aBOOK 912 $a9911006899003321 996 $aThe EU Data Protection Code of Conduct for Cloud Service Providers$94390430 997 $aUNINA