{"id":13408,"date":"2022-06-20T12:38:31","date_gmt":"2022-06-20T10:38:31","guid":{"rendered":"https:\/\/www.dfi.ch\/commitment-of-the-management-of-dfi-service-sa\/"},"modified":"2022-08-25T13:12:36","modified_gmt":"2022-08-25T13:12:36","slug":"commitment-of-the-management-of-dfi-service-sa","status":"publish","type":"page","link":"https:\/\/www.cheops-technology.ch\/en\/commitment-of-the-management-of-dfi-service-sa\/","title":{"rendered":"Commitment of the management of DFi Service SA"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-page\" data-elementor-id=\"13408\" class=\"elementor elementor-13408 elementor-10574\">\n\t\t\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-4b18ab6 ot-traditional elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"4b18ab6\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-d26b097 ot-flex-column-vertical\" data-id=\"d26b097\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-832dc98 elementor-widget elementor-widget-iheading\" data-id=\"832dc98\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"iheading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"ot-heading\">\r\n\t        \t            <span>\/\/ OUR COMMITMENTS<\/span>\r\n\t        <h2 class=\"main-heading\">Commitment of the management of DFi Service SA<\/h2>\t    <\/div>\r\n\t    \t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-fd1e32d elementor-widget elementor-widget-text-editor\" data-id=\"fd1e32d\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p> <\/p><p><strong>At the end of the first certification cycle (2014-2017) ISO27001 and OCPD \/ Good Priv@cy, the management gives a mandate to the operational teams to renew its certifications. Management is committed to providing the financial, organisational and human resources to achieve this objective.<\/strong><\/p><h4 class=\"fusion-responsive-typography-calculated\" data-fontsize=\"24\" data-lineheight=\"33.6px\">CONTROL OF SECURITY AND PROTECTION OF PERSONAL DATA<\/h4><p>In order to pursue the steps taken, the Management has decided to strengthen its information security policy and its personal data protection management system (PDMS) as a major orientation through certification of good information security management in accordance with ISO 27001:2013 and GoodPriv@cy (OCPD:2014). The Management draws the attention of all actors, employees, partners and customers, to their responsibilities in this context.<\/p><p>La responsabilit\u00e9 \u00e9tant partag\u00e9e par l\u2019ensemble des acteurs, la strat\u00e9gie mise en \u0153uvre implique un effort bas\u00e9 sur un cycle d\u2019am\u00e9lioration continu et le respect de l\u2019ensemble des politiques (SMSI et SGPD) ainsi que des r\u00e8glements, directives et processus relatifs aux r\u00e8gles de la s\u00e9curit\u00e9 de l\u2019information et de la protection des donn\u00e9es personnelles.<\/p><h4 class=\"fusion-responsive-typography-calculated\" data-fontsize=\"24\" data-lineheight=\"33.6px\">THE SCOPE OF APPLICATION<\/h4><p>The security policy, and the DMS, are based on the respect of its fundamental values which are :<\/p><ul><li>Sustainability<\/li><li>Integrity<\/li><li>Performance<\/li><li>Transparency<\/li><li>Confidentiality and the protection of personal data aim to protect the assets and interests of all stakeholders, as well as the protection of their personalities, based on the following principles :<ul><li>Controlling risks<\/li><li>To comply with the laws and regulations specific to DFI&#8217;s sector of activity<\/li><li>Respecting confidentiality<\/li><li>Preserving the trust of stakeholders<\/li><li>Protection of personality<\/li><li>Follow best practice, freely defined norms and standards.<\/li><\/ul><\/li><\/ul><p>The Information Security Policy and the DMS, as well as all the procedures derived from them, are applicable to all DFI activities. They concern all the human, material and immaterial resources contributing to the proper functioning of our company, which form the basis of our commitments and our ethics.<\/p><p>Specific procedures for each of these resources are defined, in compliance with good practice and the law, in particular the federal law on the protection of personal data, in order to guarantee optimum security. In addition, they limit any malfunction that could have an impact on the course of activities, operations and the reputation of DFI.<\/p><h4 class=\"fusion-responsive-typography-calculated\" data-fontsize=\"24\" data-lineheight=\"33.6px\">THE OBJECTIVES OF THE SECURITY POLICY AND THE PMS<\/h4><p>The objectives, which serve as a guideline for the definition of the above-mentioned security and data protection principles, are as follows :<\/p><ul><li>To ensure the protection of persons and property<\/li><li>To guarantee the protection of personality<\/li><li>Ensuring the confidentiality, integrity and authenticity of data<\/li><li>Ensure the continuity of activities by limiting the consequences of a malfunction<\/li><li>Ensuring the traceability and control of operations and events.<\/li><\/ul><p>They are based on the implementation of the following security policy and DMS:<\/p><ul><li>Inventory and assess property, assets, resources and personal data<\/li><li>Anticipate and manage risks and personal attacks<\/li><li>Controlling access<\/li><li>Implement a personal data protection defence and management system<\/li><li>Report any abnormal event or incident<\/li><li>Make employees, clients and third parties aware of the risks involved and the protection measures required.<\/li><\/ul><h4 class=\"fusion-responsive-typography-calculated\" data-fontsize=\"24\" data-lineheight=\"33.6px\">IDENTIFYING RESPONSIBILITIES<\/h4><p>Failure to comply with the security policy and the DMS poses a threat to the proper operation of DFI&#8217;s business. As such, it may be held liable. As an individual, failure to comply with these policies may result in sanctions and, depending on the case, be considered as serious professional misconduct.<\/p><p>Accordingly, legal, organisational and technical means are implemented to ensure compliance with the objectives and the resulting procedures.<\/p><p>In view of the need to conduct the security and personal data protection strategy with a consistent approach, the Management has thus decided :<\/p><ul><li>That all staff at all levels of the hierarchy, as well as representatives of service providers or agents, must be involved in the approach<\/li><li>The implementation of an organisation structured around a CISO and an independent data protection advisor.<\/li><\/ul><p>All the actors and decision-making bodies are responsible for applying and enforcing the security and personal data protection procedures arising from the above-mentioned policies and for informing and alerting employees, customers and third parties to the elements of the rules in force that concern them.<\/p><p>This Policy has been approved by the Management.<\/p><p>Plan-les-Ouates, 27.08.2019<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>\/\/ OUR COMMITMENTS Commitment of the management of DFi Service SA At the end of the first certification cycle (2014-2017) ISO27001 and OCPD \/ Good Priv@cy, the management gives a mandate to the operational teams to renew its certifications. Management is committed to providing the financial, organisational and human resources to achieve this objective. CONTROL [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-13408","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/www.cheops-technology.ch\/en\/wp-json\/wp\/v2\/pages\/13408","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cheops-technology.ch\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.cheops-technology.ch\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.cheops-technology.ch\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cheops-technology.ch\/en\/wp-json\/wp\/v2\/comments?post=13408"}],"version-history":[{"count":5,"href":"https:\/\/www.cheops-technology.ch\/en\/wp-json\/wp\/v2\/pages\/13408\/revisions"}],"predecessor-version":[{"id":13440,"href":"https:\/\/www.cheops-technology.ch\/en\/wp-json\/wp\/v2\/pages\/13408\/revisions\/13440"}],"wp:attachment":[{"href":"https:\/\/www.cheops-technology.ch\/en\/wp-json\/wp\/v2\/media?parent=13408"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}