Enhanced Data Security

Data Security

Data security is an issue that many of our clients are rightly concerned about. Loss, misuse or unauthorised access to confidential or personal data can not only be damaging to the data subjects, it can also have a significant impact on an organisation’s reputation.

Government clients have been particularly concerned about this issue and have required suppliers handling sensitive or confidential data to demonstrate that they have suitable data security policies in place.

Risk Solutions has responded by reviewing its processes for Information Security Management, which form an important part of our Quality Management System (accredited to ISO9001:2008). We now have a comprehensive data security policy and are therefore able to reassure clients that our systems and processes:

  • Comply with the law and are in accordance with good industry practice 
  • Are consistent with the requirements of the Data Protection Act 
  • Meet the government’s minimum mandatory measures set out in the Security Policy Framework 
  • Comply with ISO/IEC27001 and ISO/IEC27002.

In addition all client data is encrypted to the FIPS 140-2 standard.

Our policy is to apply high standards of data security on every project – not just those that are identified as being particularly sensitive. This is reassuring to clients, helps to ensure that our processes are applied consistently, and simplifies the process of auditing our systems.


LATEST NEWSLETTER - SPRING 2011: