Protection of data
and values with the
otris privacy SUITE.
The otris privacy SUITE...
... simplifies the inventory and optimisation of the company's data protection and information security management.

One software, many applications: Data protection and ISMS, internal and external

The otris privacy SUITE consists of the otris specialist solutions for data protection and information security. The two areas of expertise are not congruent, but complement each other on many levels. Ideally, a data protection management system (DSMS) is based on an information security management system (ISMS). The DSMS should extend the ISMS organisationally and technically to include data protection requirements. The otris privacy SUITE enables the operation of both systems on a central platform.

Data protection and information security belong together – most data protectionists and IT security officers agree on this point. Without IT security, effective data protection is not possible. A significant difference, however, is that the focus of IT security is not on the protection of personal data. An ISMS assesses data according to its value for the company. From the perspective of an IT security officer, information/data are assets that must be protected from unauthorised access. The focus in data protection work, on the other hand, is to protect the right to informational self-determination and to fulfil the corresponding legal requirements.

Even though the objects of protection differ, there are many overlaps between ISMS and DSMS in terms of protection goals. Confidentiality, integrity and availability are of paramount importance in both data protection and IT security. And the basis for good data protection is always good IT security. These two specialist areas are therefore combined in the otris privacy SUITE. However, the individual specialist solutions can also be used stand-alone (as individual solutions). Furthermore, the systems are suitable both for internal use within the company and for the tasks of the external data protection officer or the external IT security officer.

Features that distinguish the otris privacy SUITE

User-friendliness. Uniform and simple.

The specialist solutions of the otris privacy SUITE use an identical platform as a technological basis. From the user’s point of view, this has the advantage that the specialist solutions function according to a uniform operating concept. All users benefit from the high level of user-friendliness in the form of wizards, context-sensitive action menus or drag & drop functions. Users who use both the DSMS and the ISMS benefit from the seamless application within the suite.

Scalability. Adjust scope.

You choose which solution components of the otris privacy SUITE you need. You can combine the specialist solutions for DSMS and ISMS with each other, as well as select a software edition within the specialist solutions and add functional extensions (e.g. reporting workflow or enquiry workflow). If you have additional requirements, otris consulting will customise your solution.

Licence model. Scale and sublet.

You can not only easily add or cancel user licences, but also sublet the DSMS or ISMS you have created. Subletting is an attractive business model, especially for external DPOs / ISBs: the customer rents the system configured individually for him from his consultant and can operate it on his own. The flexible licensing model also makes it possible to book different numbers of licences for the two specialised solutions.

„In close cooperation with otris, we have simplified the operational work in data protection.“

Jürgen Kempter
Group Data Protection Officer, Hubert Burda Media

Well advised by independent experts

As an experienced software manufacturer, otris software AG supports its customers before, during and after the introduction of a system. However, otris does not offer specialist advice in the areas of data protection and information security. If you require specialist support, we recommend independent experts with whom we work and who are very familiar with otris privacy.

Technical support includes, in particular, legal and organisational advice as well as concrete operational work in the areas of data protection and information security. External experts offer a wide range of services in both specialist areas – from taking over the entire DSMS or ISMS to supporting the internal officer in selected areas.

The external DPOs / ISBs use otris privacy and provide you, for example, with best practice tips on how to optimally enter data and information into otris privacy. We would like to introduce you to some of the external consultancies. For specific information on the consulting services, please refer to the respective company presentation. If you are interested in a specialist consultation, please contact the named contact person directly.

ecoprotec GmbH

We are an owner-managed company with over 100 employees at 8 locations in Germany. Our speciality is comprehensive operational safety, in which we support our customers throughout Europe in meeting legal and normative requirements. We focus on the highest quality in all areas, which is why our experienced and interdisciplinarily trained employees offer a comprehensive mix of services that safely supports and relieves your company, your process flows and the legal requirements. We are happy to support you on your way to an appropriate level of data protection and place particular emphasis on a legally compliant and practical implementation of data protection in your organisation.

Our services

  • Data protection check
    How fit is your organisation in complying with data protection requirements? In order for you to be able to answer this question for yourself, we support you in obtaining a qualitative overview of the current status of the level of data protection in your company. Our data protection check provides you with a concrete overview of the strengths and potential for improvement of your data protection organisation at a reasonable cost.
  • Position of the data protection officer
    Whether customer, employee, patient or client data: Every organisation works with data that is subject to, for example, the General Data Protection Regulation, the Federal Data Protection Act, church data protection or country-specific regulations. This can result in the obligation to appoint a data protection officer in writing.

ecoprotec supports the organisation in fulfilling the obligations resulting from the legal requirements. We provide the external data protection officer or support your internal DPO in carrying out his duties. We attach importance to the practical and process-oriented implementation of data protection requirements. In this respect, we rely on the use of otris privacy to enable structured data protection management.

Anschrift
ecoprotec GmbH
Pamplonastr. 19
33106 Paderborn

Ansprechpartner
Annika Dickgreber
+49 5251 877 888 340
dickgreber@ecoprotec.de

Web
www.ecoprotec.de

Luther Rechtsanwaltsgesellschaft mbH

Luther has been helping companies avoid risks and implement legally sound solutions for many years. The advice includes

  • the development and expansion of the data protection organisation of corporate groups and medium-sized companies, as well as
  • drafting the necessary guidelines
  • carrying out data protection audits, data protection workshops and training of employees
  • advising on the design and implementation of the automated exchange of data (e.g. in the areas of personnel, customers, suppliers) in the national and international environment as well as the implementation of
  • the necessary measures (commissioned data processing, standard contractual clauses, registrations, notification obligations)
  • the data protection-compliant design of web presences or online shops
  • advice on the drafting of company agreements
  • advice on the introduction of video surveillance systems
  • assistance with enquiries and inspections by the data protection supervisory authorities.

Luther Rechtsanwaltsgesellschaft mbH is one of the top addresses among German commercial law firms. From eleven German and seven international offices, Luther’s lawyers and tax advisors support their clients both in legal disputes and in structuring advice. Luther advises on all legal and tax issues relevant to companies, investors and the public sector. Our approach is interdisciplinary. In our view, legal and tax issues are often closely linked and the longer-term economic and financial implications should not be overlooked.

Of course, we also support our clients in all international matters. On the one hand, they have their own foreign offices in central financial centres and investment locations in Europe and Asia. On the other hand, Luther has long-established, close relationships with commercial law firms in all relevant jurisdictions worldwide. We are also the German member of Taxand, a worldwide association of independent tax firms.

Anschrift
Luther Rechtsanwaltsgesellschaft mbH
Anna-Schneider-Steig 22
50678 Köln

Ansprechpartner
Silvia C. Bauer
+49 221 99 37-0
silvia.c.bauer@luther-lawfirm.com

Web
www.luther-lawfirm.com

TÜV Informationstechnik GmbH ein Unternehmen der TÜV NORD GROUP

Security and quality are the results of our services. Sound and comprehensible data protection advice is the goal of our daily client work. As a trust provider, we are a partner to industry and public authorities in matters of data protection and data security.

TÜViT supports you in setting up a sustainable data protection organisation, which also includes the register of processing activities and the assumption of further information obligations in accordance with the EU General Data Protection Regulation (DS-GVO). In this way, TÜViT ensures that companies of all sizes comply with legal data protection requirements. In addition, we advise companies on all questions regarding the data security of their IT landscape and support the conception of data protection principles in your company. Our service portfolio also includes audits of data protection management systems (DSMS) and the appointment of a data protection officer.

We sensitise managers and employees to the requirements of relevant data protection laws. TÜViT’s experience shows that with external support, companies succeed in meeting legal data protection requirements in the long term without negatively affecting operational processes.

We are happy to support you in the introduction of otris privacy and help you to efficiently establish a data protection organisation in your company. This includes in detail

  • Support and active implementation during the introduction of otris privacy
  • Advice on the definition of data and data subject categories
  • Support in the creation of procedural instructions and guidelines
  • Support and advice in the conception of data protection principles
  • Creation, identification and preliminary collection of processing activities
  • Organisation of the register of processing activities iSv. Art. 30 DS-GVO
  • Carrying out risk impact assessments pursuant to Art. 35 DS-GVO
  • Implementation of awareness-raising measures in the area of data protection and data security
  • Monitoring the proper application of implemented or planned data processing programmes
  • Support and advice on all data protection and data security issues
  • Conducting/supporting data protection and data security audits
  • Accompaniment of necessary measures in the context of data processing by third parties pursuant to Art. 28 DS-GVO

Should you wish to place the responsibility for data protection in external hands, our certified external data protection officers with extensive industry experience are at your disposal.

Anschrift
TÜV Informationstechnik GmbH
IT Security
Langemarckstraße 25
D-45141 Essen

Ansprechpartner
Fachstelle für Datenschutz

Peter Kattner, LL.B.
+49 201 89 99-643
p.kattner@tuvit.de

Web
www.tuvit.de

SONNTAG IT Solutions GmbH & Co. KG

SONNTAG IT Solutions is a spin-off of SONNTAG & Partner Wirtschaftskanzlei in Augsburg. We support you in the areas of digitalisation, IT project management as well as IT compliance, IT audit & assurance. This spectrum ensures that we can offer you the full range of consulting services related to IT and regulation.

Together with you, we develop customised, transparent and, if necessary, pragmatic solutions that can be implemented directly in your company’s day-to-day operations. We accompany you in your projects from the first assessment to the final implementation.

In this way, we do not deliver patterns, but goal-oriented solutions, true to our motto: Compliant. Digital. Transparent.

An excerpt of our services in the area of IT Audit & Assurance:

  • Project-accompanying audit IDW PS 850
  • Certification according to IDW PS 880
  • Certification according to IDW PS 951 (ISAE 3402)
  • Process documentation and IT documentation
  • Data analyses

An excerpt of our services in the area of IT compliance:

  • Data protection consulting
  • Appointment of the external data protection officer
  • IT security check-up
  • Optimisation consulting for the internal control system (ICS)
  • Advice on certification readiness according to ISO 9001

An excerpt of our services in the area of digitalisation:

  • Digitalisation and automation of your business processes
  • Interface conception
  • App development

An excerpt of our services in the area of IT project and process management:

  • Process analyses and identification of optimisation potentials
  • Training and workshops on the modelling language BPMN 2.0
  • Project management for the introduction of new software in the company

If you are interested, we would be happy to present our services to you in more detail in a personal meeting. We look forward to hearing from you.

If you are interested, we would be happy to present our services in more detail in a personal meeting. We look forward to hearing from you.

Anschrift
SONNTAG IT Solutions GmbH & Co. KG
Schertlinstraße 23
86159 Augsburg

Ansprechpartner
Felix Hofstetter
Business Development Manager, IT-Berater
felix.hofstetter@sp-it.de
+49 152 282 670 28

Web
www.sonntag-its.de

News

Reference articles | Technical articles

to the reference report

Data protection as an overall concept

Holistic solution in data protection: control centrally, implement locally ...

to the reference report

Data protection with security

At Evonik, data protection is a central compliance issue with high priority ...

 Contact form | Request information now!

otris software AG will use all information provided here exclusively in accordance with the privacy policy.

Google reCAPTCHA must be loaded to submit the form.

Google privacy policy Load Google reCAPTCHA

 Your contact person