(Voorschrift Informatiebeveiliging Rijksdienst (VIR), Baseline Informatiebeveiliging Rijksdienst. (BIR)), the General Data Protection Regulation . Get the Cloud computing Een operationeel product op basis van de Baseline Informatiebeveiliging Rijksdienst (BIR) Colofon Onderhavig operationeel product, . BIJLAGE(III:(maatregelen(set(Baseline(Informatiebeveiliging(HO. Hoger! Onderwijs!geschikt!is!en!hoe!deze!Baseline!Informatiebeveiliging! .. Rijksdienst !.

Author: Voodoorr Sagrel
Country: Bahamas
Language: English (Spanish)
Genre: Travel
Published (Last): 25 October 2013
Pages: 317
PDF File Size: 16.75 Mb
ePub File Size: 20.69 Mb
ISBN: 284-1-98280-920-8
Downloads: 64284
Price: Free* [*Free Regsitration Required]
Uploader: Nir

The report has a descriptive status and includes a legal disclaimer.

Organizations operating in the Netherlands government sector must demonstrate compliance with the Baseline Informatiebeveiliging Rijksdienst standard BIR Demonstrating BIR compliance is the responsibility of the customer. When using gaseline cloud services vendor, customers typically demand assurances from the vendor, and add their own additional technology and organizational decisions, choices, and processes.

Baseline Informatiebeveiliging Rijksdienst standard (BIR 2012)

The report is provided to customers under a non-disclosure agreement NDAon the basis that it is for customer information only and that it will not be copied or disclosed via other channels than the Microsoft Service Trust Platform.

When using Microsoft Azure or Officepart of the BIR controls for these cloud services are managed by Microsoft in line with the shared responsibility informatiebeveiliting in cloud computing.


It requires the organization to implement an information security management system and to address risk with appropriate technical and organizational measures. Where there are additional BIR controls that are not covered by ISOinfirmatiebeveiliging are made inforrmatiebeveiliging other independent attestations, audit documentation, or contractual statements.

Baseline Informatiebeveiliging Rijksdienst standard BIR Agencies operating in the Netherlands government sector must comply with the Baseline Informatiebeveiliging Rijksdienst standard. The responsibility for BIR compliance is applicable to the government sector.

Microsoft Trust Center | Baseline Informatiebeveiliging Rijksdienst standard (BIR )

For the remaining controls, Microsoft provides guidance in the report on how compliance with those controls can be demonstrated. Recommended Resources Featured resources. Take our rikjsdienst, interactive question evaluation to assess your readiness to comply with the GDPR today.

Is the BIR coverage report a legal binding document? However, the organization must add its own additional controls, choices, and processes, which are part of the overall BIR evaluation.

For Microsoft in its role as cloud service provider, BIR compliance is not the objective, nor is it technically feasible. Azure and Office undergo various periodic independent certifications and attestations, some of which are closely related to BIR Organizations that need to comply with BIR are therefore required to determine if the underlying Microsoft services they are using are compliant with BIR Agencies operating in the Informtaiebeveiliging government sector must comply riijksdienst the Baseline Informatiebeveiliging Rijksdienst standard.


Microsoft in-scope cloud services Azure detailed list Office detailed list.

Instant BIR/BIO add-on | Instant Management Systems

The baselihe of the report is to demonstrate that a government agency can adopt the Microsoft Online Services in a manner that is compliant with BIR Find out if your organization meets personal data protection requirements.

However, an organization needs to complement those vendor assurances with their own implementation choices, additional technology controls, and administrative processes.

Assess your GDPR compliance Find out if your organization meets personal data protection requirements. Microsoft Online Services provides many controls that help organizations within the Netherlands with their BIR compliance needs.

Instant Management Systems

Customers can share the report with their own internal or external auditor as rijksdiensg of their compliance or assurance processes. This results in an overall assessment by the customer on its BIR compliance, which can be submitted for review or certification to a third-party auditor. Can we share this report?