Skip to content
  • There are no suggestions because the search field is empty.

How do you ensure that data and your systems are secure? Are you GDPR compliant?

Blackfinch are fully compliant with GDPR and actively incorporate the ICO’s principles such as Data Protection by design and default. Blackfinch holds ISO/IEC 27001 (Information Security Management) certification and treats the integrity and protection of confidential data with the utmost level of care. In addition to process-based controls, Blackfinch employs multiple levels of protection at both physical and virtual levels. 

Data is encrypted both at rest and in-transit with all access and system activity 
being logged and audited. User access to systems is assigned following the 
principle of least privilege, so personnel are not given access to more data than 
they need to have access to in order to perform their job roles. Employee contracts 
contain legally binding clauses regarding confidential information.