Print

Information Security

Information security is an essential enabler for the protection of privacy and personal data.  Moreover, most organisations must deal with an ever-changing landscape affecting their operations. Uncertainties created by such changes will affect how the organisation needs to react in order to ensure that its information assets are suitably protected. Therefore, there is a need for a specific framework that helps individuals responsible for information security to manage the uncertainties which might affect the security of their organisation's information over time. Such a framework for a specific organisation is referred to as Information Security Risk Management process.

There are three generally accepted elements to properly secure information.

  1. Confidentiality: so that only the right people have access to the information;
  2. Integrity: so that only the right people can update the information in the right way; and
  3. Availability: the information is available when needed.

Filters

19
Nov
2025

EDPS Formal comments on the draft Commission Delegated Regulation supplementing Regulation (EU) 2023/2631 on regulatory technical standards specifying criteria for assessing the appropriateness, adequacy and effectiveness of external reviewers

EDPS Formal comments on the draft Commission Delegated Regulation supplementing Regulation (EU) 2023/2631 with regard to regulatory technical standards specifying the criteria for assessing the appropriateness, adequacy and effectiveness of the systems, resources and procedures of external reviewers

Available languages: English
8
Aug
2025

EDPS Formal comments on the draft Implementing Regulation as regards specifications and procedures for the management of risks to the provision of non-qualified trust services

EDPS Formal comments on the draft Implementing Regulation laying down rules for the application of Regulation (EU) No 910/2014 as regards specifications and procedures for the management of risks to the provision of non-qualified trust services.

Available languages: English
1
Aug
2025

EDPS Formal comments on the draft as regards the necessary details for the authorisation and supervision of inside information platforms and registered reporting mechanisms by the European Union Agency for the Cooperation of Energy Regulators

EDPS Formal comments on the draft Commission Delegated Regulation supplementing Regulation (EU) No 1227/2011 as regards the necessary details for the authorisation and supervision of inside information platforms and registered reporting mechanisms by the European Union Agency for the Cooperation of Energy Regulators.