Organic Law on Data Protection (LO 15/1999) LOPD Regulation
(RD 1720/2007)
Penal responsibility of juridical persons
Mechanisms that prevent access to data or resources with rights other than those authorized.
Unintelligible storage of passwords
Audit for verification and control of adaptation of measures, reports of detection of deficiencies and corrective proposals
Transmission of data through encrypted electronic networks.
GDPR: European LOPD Regulation (2018)
NIS Directive - Network and Communications Encryption
Ability to guarantee the confidentiality, integrity, availability and strength of data processing systems and services.
"Pseudonymization" and encryption of personal identifications.
Ability to restore availability and access to data quickly in case of physical or technical incident
Regular verification, evaluation and assessment process of the efficiency of the implemented measures
Communication of security incidents and the measures implemented for their solution.
LOPG. Data Treatment
identification and legitimation in access for staff for the personnel responsible for data processing
Policy and management of passwords
Communication and encrypted storage
GDPR. More Data Processing
Information and rights of those affected
Registration and analysis of activities related to data processing
Implementation and review of "appropriate" technical and organizational measures
Implementation of active responsibility measures
GDPR. Incidents
Identification and resolution of security breaches
Analysis of security incidents
Communication about the incidents and the measures implemented to resolve them