A secure, global infrastructure built around data privacy. Sign In App is committed to ensuring the security of your data. We are GDPR compliant, Cyber Essentials certified and ISO27001 accredited for Information Security Management.
A secure, global infrastructure built around data privacy. Sign In App is committed to ensuring the security of your data. We are GDPR compliant, Cyber Essentials certified and ISO27001 accredited for Information Security Management.
Sign In App is a cloud based service hosted in Tier 4 data centres. When starting a trial or purchasing a subscription, you can select from one of six data storage regions; UK (London), EU (Stockholm), US (North Virginia or California), Canada (Montreal) and Asia-Pacific (Sydney). All visitor data and backups are stored and replicated within the region you select. Our data centres employ physical security and environmental controls to secure our infrastructure from physical threat or impact. Each site is staffed 24/7/365 with on-site physical security to protect against unauthorised entry.
Sign In App acts as your data processor for visitor data. Our responsibilities include ensuring your data is secure, providing transparency around where the data is stored and providing features to allow you to control your data in line with your GDPR policies. Ethical data protection has always been a key part of Sign In App and the GDPR has only strengthened this since coming into force. With Sign In App you can set your own data retention rules, customise the data collected for each visitor type and present policies and opt-in options to visitors. You can also rest assured that your visitor data stays in the region you choose.
We also have an IASME certificate of assurance issued to us for GDPR compliance. This is attained following a self-assessment against the IASME governance standards which are verified by IASME.
Yes. You can find evidence of our submission here. The Data Security & Protection Toolkit is an on-line self assessment tool that allows organisations to measure their performance against the National Data Guardian’s 10 data security standards.
In the UK all organisations that have access to Patient data and systems must complete the NHS Data Security & Protection Toolkit. This provides assurance that they are practising good data security and that personal information is handled correctly. You can find more information about the NHS DSPT here.