§ 00·0x00/COMPLIANCE / BDSG
BDSG and CipherStash.
CipherStash helps you meet your Bundesdatenschutzgesetz (BDSG) obligations by giving you identity-based access controls that keep your data encrypted even when it is in use. Eight concrete BDSG provisions map directly to CipherStash capabilities.
§ 01·0x01/PROVISIONS / HOW IT MAPS
Eight provisions. CipherStash, by default.
Automatic encryption
Automatic encryption ensures that sensitive data is secure in use, reducing the risk of unauthorized access.
Identity-based access control
Real-time identity-based access control enforces strict processing boundaries, allowing access only to authorized individuals.
03
BDSG §62Access logging
Data access can be managed via our fine-grained access controls tied to identity providers, ensuring that only authorized personnel access sensitive data. Our logging of access supports accountability and traceability.
04
BDSG §27Pseudonymize sensitive data
Encryption can be used to pseudonymize sensitive data, making it accessible only in decrypted form to authorized individuals.
Dynamic access control
CipherStash's enhanced encryption capabilities for sensitive data ensure compliance with stricter requirements for special categories like health and biometric data. Identity-based access control allows for dynamic management of who can access sensitive data based on role or necessity.
06
BDSG §43Reduce breach cleanup costs
Encryption mitigates the severity of data breaches: encrypted data without the decryption keys is not considered compromised under GDPR or BDSG. Our data access auditing reduces the effort needed to prepare notification reports and improves accuracy.
07
BDSG §70Accountability and compliance documentation
CipherStash's logging and audit features create a verifiable record of data access and processing, supporting accountability and compliance documentation.
08
BDSG §26Misuse resistance
CipherStash's secure encryption ensures that employee data is stored safely. Real-time identity-based access control enforces role-based restrictions, reducing the risk of misuse.
§ 02·0x02/NEXT / TRUST CENTER
BDSG-ready out of the box.
Visit the CipherStash Trust Center for compliance documents, penetration test reports, and security questionnaires covering BDSG and GDPR obligations.