7. Data security


What provisions are in place for data security (including data recovery as well as secure storage and transfer of sensitive data)?

Is the data safely stored in certified repositories for long term preservation and curation?


Guidance- Aspects that should be referred to in this section include provisions ensuring data security, including its storage and recovery.



Sample:

 

Access to the documentation stored in XXX servers is restricted to group members.

  • Data saved in XXX servers is backed up.  
  • Access to data saved in XXX servers requires user authentication with password.
  • Access to servers is permitted only when on TalTech premises or by VPN.
  • In OneDrive, it is possible to recover changed/deleted datasets.
  • We only work with pseudonymized data, with the key stored in a safety cabinet located at XXX (please specify location) and to which only XXX have access to (please specify the people that have access to it).
  • It has been judged that controlled access is not required for these data since the data do not contain personal information