

Sebastian Kraska, FounderFounded in 2009 in Munich, Germany, as a DPO services company for local corporate legal entities, IITR leverages its indepth knowledge of European privacy laws in delivering outstanding GDPR compliance analysis software to its clients. As deviations in GDPR compliance can hinder a company’s growth, IITR has added a new web-based verification/assessment tool to its suite of digital privacy management products.
There is no benefit for the protection of personal data if SMEs are not able to undertake measures to ensure the privacy of its customers
Considering small and mid-sized organizations, IITR has orientated its Compliance Kit 2.0 and Privacy Kit with ISO 27701 (the latest enterprise standard for privacy management). Highly adaptable to an existing enterprise privacy landscape, users can decide the information to share within IITR’s applications and select from a wide variety of privacy management tools in creating a barrier against cyber delinquents. “All of our Privacy and Compliance Kits are updated regularly, and we also cover new topics in webinars, newsletters, and blog articles through our platforms,” ensues Kraska. IITR offers clients written documentation and proof of concept material that enables them to understand the data they would like to share or omit at the start of a privacy management project. Once the data is set up in an IITR privacy management system, clients can go through the documents (one processing activity at a time) and individually track the status to assure that no information in review is missed and descriptions are still accurate in their present structure.
As the adoption of data-driven business models continues to rise, IITR believes the future of compliance tools will include a combination of information security and privacy management. In the same light, for one large German company, IITR delivered a privacy management operational standard that elevated the company’s protection of personal data, subsequently adding an ISO 27701 accreditation for privacy management. In conjunction with the already existing ISO 27001 information security management certification, the client was able to improve the efficiency of internal procedures and eliminate risk.
As European Data Protection Authorities are not in power to evaluate privacy management applications for GDPR requirements, IITR worked alongside approved Austrian Privacy Professionals to validate their solutions as fully GDPR compliant. The validation of their tools by the state authorities allows IITR to ensure that the Compliance Kit 2.0 is always in line with GDPR requirements. “We wanted the highest possible standard of approval to reassure that the Compliance Kit 2.0, in fact, does meet the rules as defined by the GDPR,” mentions Kraska. Going forward, IITR is planning to enter the e-learning arena with a focus not just on privacy but also on information security management to further up the ante in offering a solution for complete GDPR adherence.
Top