Quarterly journal published in SPbPU
and edited by prof. Dmitry Zegzhda
Peter the Great St. Petersburg Polytechnic University
Institute of computer sciences and technologies
information security of computer systems
Information Security Problems. Computer Systems
Published since 1999.
ISSN 2071-8217
ANALYSIS OF THE INTERNATIONAL STANDARD ISO 27701 AND THE FORMATION OF RECOMMENDATIONS FOR ITS USE
V. A. Morgunov, R. A. Antonov «MASCOM-Techlain», Origin Security
Annotation: Any organization, processing personal data of citizens of the European Union is obliged to comply with the requirements of GDPR (General Data Protection Regulation). However, the regulations do not contain information about how to comply with these requirements in practice. The international standard ISO 27701 solves this problem because it contains specific controls to fulfill requirements specified above. In the course of the research, the standard was analyzed and there were made up recommendations that can be applied to all types and sizes of organizations, including public and private companies, government entities and non-profit organizations that process personal data of citizens of the European Union.
Keywords: personal data, controls, requirements, GDPR.
Pages 46-53