21.05.2024 | Customers Featured News

Evitec Solutions demonstrates commitment to information security – now certified in ISO 27001

Evitec Solutions attains Information Security Management System certification in compliance with the ISO/IEC 27001:2022* standard.

ISO 27001 is a standard that sets the criteria for an information security management system. The challenge lies in finding the best way to fulfill those criteria and constantly improve the system. Thus, compliance with an ISO standard is a process that demands ongoing efforts from the company. In the financial sector, where security and bank secrecy have always been essential, along with GDPR requirements for personal data protection, the importance of information security is well known.

– We can see the EU (EU’s Digital decade**) putting pressure on this matter together with new directives and initiatives such as DORA and NIS2. The focus is on the critical industries, and subsequently on critical system operators like us. We need to meet these demands, and the ISO 27001 standard is a good and straightforward way to do it. Attaining ISO 27001 certification demonstrates our commitment to our customers and other stakeholders, states Harri Inkinen, Chief Compliance Officer at Evitec Solutions.

– Showing that we are investing in security measures that protect us and our customers’ data, enhances our credibility as a partner in the markets and creates new business opportunities, Inkinen says.

Looking back, the decision made in 2023 to seek certification was wise. Back then, we had various security practices and processes across the company, but through the certification process we unified many of them for the whole organization. Although the certification project required significant effort, our operations will gain cadence and other positive results with the improved ways of working.

*) ISO/IEC 27001 is an information security management system standard jointly published by the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC).

**) More information: Europe’s Digital Decade