In today's digital world, data protection and data security are of central importance. Companies and individuals are placing increasing emphasis on the protection of your sensitive data. At oneVcard, we take this concern seriously and have implemented comprehensive measures to ensure that your data is processed securely and in compliance with GDPR.
From 01.01.2025, Prof. Dr. Eberhard Schott, an expert in information security and data protection, will take over the role of Data Protection Officer at oneVcard. With his support, we will continue to set new standards in data protection and data security.
Our data protection principles – An overview
- Data protection guideline: Information stored on digital business cards is not used for profiling or other purposes.
- Anonymized data collection: To improve our services, we only collect anonymized data that cannot be traced back to individual users.
- Storage in the EU: All data is stored exclusively on servers within the European Union that meet the highest security standards.
- Strict access controls: Access to data is strictly regulated and only possible for authorized persons.
- Developer team based in Germany: Our applications are fully developed and maintained in Germany, without outsourcing to third countries.
Data security at the highest level
- Data protection guideline: Our database infrastructure is designed for high availability and data security. Backups are created daily and kept for seven days.
- Two-factor authentication: Access to sensitive systems is protected by two-factor authentication to prevent unauthorized access.
- Protection against brute-force attacks: Systems automatically block suspicious activities to minimize security risks.
- Compliance guidelines: Our internal guidelines are regularly reviewed and updated to ensure that they always comply with legal requirements.
- Regular security checks: We continuously carry out penetration tests and audits to identify and fix vulnerabilities.
Our guidelines and policies for maximum data protection
- Data protection guideline: This defines the principles for handling personal data, including responsibilities, transparency obligations and measures for data security. It is regularly reviewed and updated to ensure the highest standards.
- DLP Policy: Our Data Loss Prevention (DLP) Policy helps protect sensitive info and prevent data loss. This includes things like access controls based on roles, encrypting data transfers, and regular employee training.
- Internal Controls: oneVcard runs regular audits to make sure we're following data protection rules. This means checking who has access to what, documenting all our processes, and doing data protection impact assessments for new tech.
Handling Customer Data – Transparency and Security
- Storage and Use: We only use customer data for clearly defined purposes and always store it encrypted. Data we don't need anymore gets securely deleted.
- Access Control: Access is based on a 'need-to-know' basis, with strong authentication methods in place.
- Training and Awareness: Our team and contractors get regular training to make sure they handle customer data safely.
Working with Subcontractors and Third-Party Providers
- Selection Criteria: We carefully check our subcontractors to make sure they meet GDPR requirements. All our partners are based in the EU.
- Contract Management: Before we start working together, we sign a data protection agreement that sets out the responsibilities and steps for protecting personal data.
- Regular Checks: We continuously monitor and document how our subcontractors are meeting data protection requirements.
Emergency Management and SLA Standards
- Security Incident Management: We have a clear process for handling security incidents to make sure we respond quickly and minimize damage. This includes 24/7 on-call services and an escalation plan for serious incidents.
- Service-Level Agreements (SLA): Our SLAs guarantee 99.5% annual server availability and a maximum recovery time of six hours if there's an outage. We'll give you plenty of notice for any planned maintenance. Our SLA is part of our oneVcard Teams Enterprise package.
- Proactive Communication: oneVcard will let customers or partners know quickly and clearly about any security incidents that affect them, as required by law.
Our Vision – Security and Data Protection as the Foundation for Trust
At oneVcard, we see data protection not just as a legal must-do, but as a key part of our business strategy. We aim to give our customers and partners the highest level of security and transparency.
Whether you're a medium-sized business or a global corporation, our solutions are scalable, innovative, and tailored to your specific needs. With our clear focus on data protection, we're setting a strong example for the future.
Intrigued? Schedule a demo and see how oneVcard manages your data securely and efficiently.
Get in touch now and experience data protection in a whole new way
Want to learn more about how oneVcard can support your company with innovative, secure solutions? We're here to help!
Start request
Want to use digital business cards from oneVcard in your company, but still have questions or want a customized offer? Then send us a request.
We have received your request and will get back to you shortly.
Oops. Something went wrong. Please send us a message to support (at) onevcard.de