Call us on +(33)4 28 70 91 81

Visit security of your data is our priority

Chez Data Comply One (ex Mission RGPD), la sécurité de vos données est au cœur de nos préoccupations. Nous mettons tout en œuvre pour protéger vos données sur notre plateforme. Cloud Souverain, ISO 27001, HDS, RGPD.

  1. Sovereign, certified hosting in France
  2. Technical, physical and organizational safety
  3. Data confidentiality, integrity and availability
  4. Compliance, Governance and Continuity

 

Security

Data Comply One (ex Mission RGPD) s’engage sur tous les domaines qui participent à la sécurité de vos données : employés, sécurité physique, accès aux données, hébergement et réseaux, logs, disponibilité, audits.

Privacy

Access to your account is secured by several protection mechanisms and we will scrupulously protect your data. Your data is encrypted both in transit and at rest in our databases.

Integrity

Data Comply One (ex Mission RGPD) garantit la protection de vos documents contre toute modification, grâce à un contrôle strict de vos données et une politique de sauvegardes régulières.

Availability

Your data is replicated in real time in 3 separate data centers in France, automatically switching from one to the other within seconds in the event of an incident.

Visiativ Cloud
Datacenters Free Pro
ISO 27001 and HDS certified

Our platform is based on the Visiativ cloud, hosted in Free Pro data centers located exclusively in France, certified ISO 27001 and HDS (Hébergement de Données de Santé). These infrastructures benefit from network and electrical redundancy (2N), fire detection systems to APSAD R13 & VESDA standards, and an availability commitment of 99.982%. The data centers are more than 300 km apart, to guarantee a geographically robust disaster recovery plan.

 
Cybersecurity Team - Cloud Visiativ
6 physical access control points in data centers
Direct visitor supervision and access log archiving
  • Documented information security policy, validated by Visiativ DSSI
  • Regular penetration tests by external experts
  • Équipe cybersécurité dédiée (DSSI/RSSI) chez Visiativ + direction technique chez Data Comply One (ex Mission RGPD)
  • IT charter, administrator charter, developer charter
  • DevSecOps organization: continuous implementation of security in development cycles
  • 6 physical access control points in data centers
  • 24/7 video surveillance with trained and authorized SSIAP agents
  • Surveillance continue des accès aux locaux de Data Comply One (ex Mission RGPD)
  • Direct visitor supervision and access log archiving

Data encryption and strong authentication
Full logging
Hourly encrypted backups
  • Data encryption at rest and in transit (TLS/SSL, HSTS, Perfect Forward Secrecy)
  • Strong authentication (email + password + optional 2FA)
  • Password encryption using SHA-1, SHA-256 or bcrypt hash functions
  • Sensitive data exchanged only via secure tools or encrypted media validated by the IT Department
  • Short-life certificates (90 days) automatically renewed

  • Strict control of access to source code and production environments
  • Full logging of system accesses and actions (audit logs replicated in 3 datacenters)
  • Log retention: 1 year, secure access (VPN, 2FA)
  • Documented procedures for incident response, analysis, closure and prevention
  • In the event of an incident, immediate notification of the customer and guaranteed traceability

 

  • Real-time database replication on 3 separate sites
  • Hourly encrypted backups, 12-month rolling retention period
  • Daily testing of restoration processes
  • Immutable backups stored on multi-site object storage
  • Automatic resource scaling (CPU, RAM, disks)
GDPR & DPO
Integrated PRA/PCA
Total reversibility

 

  • Integrated DRP/DCP: automatic failover in the event of an incident
  • Total reversibility in the event of breakage: data exportable in open formats (CSV, Excel)
  • Contractual commitment to complete and secure data return at the end of the contract