The amount of physical data that companies keep has significantly reduced with the advent of cloud storage and back-ups. To purchase a vault, maintain it and ensure that it remains up to date with regulations, often represents a cost that is unjustifiable for most companies.
Off-site vaulted storage, as a result, has become a far more viable option. This sort of storage is also considered a terrific tool when combating the risks associated with handling large volumes of paper records. At Topwood, we offer this highly secure storage in two custom built vaults to house both electronic and paper data.
Our vaults have been tested to Swedish NT Fire 017 and are fire and heat resistant up to 4 hours.
Each item you select to store with Topwood will not only be allocated its own location but also marked with a bar-code to ensure easy identification and location. Items in storage are completely anonymous apart from this reference which gives an additional layer of security.
Our vaults are currently used for:
For additional security, we have the option to store and monitor media in phoenix commander safes within the vault.
The already impressive set-up at Topwood has become even better with the introduction of a brand new Durasteel vault. The vault is fitted with an alarm system in addition to its CCTV system which allows us to monitor each and every individual that accesses the vault. Access itself is restricted to only those that have been authorised with controlled entry systems.
The processes we employ as a provider of Secure off-site data storage are tested and monitored to ensure compliance with ISO27000 and BS10008
Chain of Custody (CoC) is the paper or digital trail from the first enquiry to the control, transfer and last stage of downloading a Certificate of Destruction. When it comes to shredding of documents, media, products or packaging it is important for the data controller to map where data is being passed and to ensure security measures are in place to protect the data. Read on to find out more.
If your company suffers from poor record management, a move to online filing makes managing your files in our storage system easy. With a secure login you can search for, edit, make requests and recall files. It also allows you to approve the destruction of files, simply by clicking your mouse. Managing files online keeps errors to a minimum and the reduced admin allows staff more time to focus on customers. Read on to find out more.
With direct access to our records centre database users can:
These tasks done online remove:
Online access allows:
The net result is that your staff spend less time managing files and more time adding value to your business.
Online file management is the first step to electronic document management.
PD 5454 has now been superseded by BS 4971: 2017 which covers the exhibition and storage aspects of conservation formerly found in PD 5454.
The new BS 4971: 2017 sets out best practice of how documents and data should be stored. The standard is the benchmark for compliance managers to use when conducting due diligence and assessing the suitability of storage companies. Read on to find out more.
The standard is best practice for the storage of archived files and documents. It now includes guidance for the safeguarding of digital media such as CDs, DVDs, USBs and hard drives.
Guidance is given to security, software usage, fire protection, temperature control and humidity.
A professional records management business like Topwood should be able to demonstrate it complies with BS 4971: 2017- and we can. A facility manager, security officer or compliance manager, can use BS 4971: 2017 as a benchmark when assessing the suitability of a company. A records management firms that can not prove compliance with BS 4971: 2017 should raise alarm bells when compliance managers undertake their due diligence.
At Topwood we incorporate the standard into the scope of our information security management system (ISMS). Our ISMS is independently certified to comply with information security standard ISO 27001.
UK law states Data Controllers (office managers), who subcontract the handling of their data to a third party (a data processor), remain liable for that data. Data controllers must, therefore, be 100% sure that their processors have the proper processes and controls to protect their data. A data processor with ISO 27001 accreditation has been independently audited to have the relevant processes and controls. Read on to find out more.
Contents 1. What is ISO 27001? 2. What standards does ISO 27001 include? 3. GDPR – Are you compliant? 4. What is BS 4971: 2017?
ISO 27001 is an information security standard regulated by the International Organization for Standardization. They develop and publish International Standards. This passage is taken from their website page: ISO/IEC 27001 – Information security management ISO/IEC 27001 is the best-known standard in the family providing requirements for an information security management system (ISMS). Like other ISO management system standards, certification to ISO/IEC 27001 is possible but not obligatory. Some organizations choose to implement the standard in order to benefit from the best practice it contains while others decide they also want to be certified to reassure customers and clients that its recommendations have been followed. ISO does not perform certification.
ISO 27001 Certification webpage at BUREAU VERITAS describes the standard as follows:
ISO 27001 is the international standard related to information security management systems. It has been designed to allow you to assess your risk and implement appropriate controls preventing confidentially, integrity and availability of information assets. The fundamental aim is to protect the information of your organisation getting into the wrong hands or losing it forever.
At Topwood, we were accredited with ISO 27001 in April of 2015. We are one of the only Confidential Document Management Companies in the West Midlands to have this standard. Does your shredding firm have ISO:27001?
With the new General Data Protection Regulations due to come into effect in May 2018, it is increasingly more important for all data controllers to ensure their data is being processed under the new guidelines. As part of this process, organisations are required to monitor all 3rd party data processors like shredding and storage companies as they come into contact and have access to individuals’ data. There are many opportunities for security breaches in any organisation.
BS 4971: 2017 sets out best practice in how documents and data should be stored. The standard is the benchmark for compliance managers to use when conducting due diligence and assessing the suitability of storage companies.
The standard is best practice for the storage of archived files and documents. It now includes guidance for the safeguarding of digital media such as CDs, DVDs, USBs and hard drives.
Guidance is given to security, software usage, fire protection, temperature control and humidity.
A professional records management business like Topwood should be able to demonstrate it complies with BS 4971- and we can. A facility manager, security officer or compliance manager, can use BS 4971 as a benchmark when assessing the suitability of a company. A records management firm that can not prove compliance with BS 4971 should raise alarm bells when compliance managers undertake their due diligence.
At Topwood we incorporate the standard into the scope of our information security management system (ISMS). Our ISMS is independently certified to comply with information security standard ISO 27001.
If you would like to find out more about our secure document scanning, shredding and storage solutions call 0800 781 1066 or request a call back using our call back form.