Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » ISO 27001 » Advanced Digital Signature

Advanced Digital Signature

The advanced electronic signature is a digital signature to uniquely identify the signer based on an advanced certificate. The signature keys are utilized with a high degree of confidence by the signatory (who has sole possession of the signing key).

An electronic signature is observed to be advanced, under eIDAS,  if it has met several requirements, including:

– Identifies and links its signatory uniquely

– The private key used to make the electronic signature is under the sole proprietorship of the signatory

– If the data is tampered with after the signature, the signature must detect that this has happened

-The signature should be invalidated in the event its accompanying data has changed

Additional reading

SOC 2 Automation: What Is It, and Why Do You Need It?

TL, DR : SOC 2 automation streamlines audit prep by automating evidence collection, continuous control monitoring, and policy management, replacing spreadsheet tracking and cutting audit readiness from months to weeks. The software automates repetitive tasks like mapping Trust Service Criteria to controls, deploying security controls, and generating reports, integrating with your tech stack for full…

SOC 2 Readiness Assessment [A Quick Guide]

Any company applying for a compliance audit like SOC 2 needs to have a certain degree of confidence. Getting the entire organization aligned with stringent requirements can take months. Moreover, an endeavor like SOC 2 can be expensive. So it’s important that companies know that their prep work is good enough to get them a…

GDPR Article 32: Security of Processing

TL,DR: GDPR Article 32 requires controllers and processors to implement technical and organizational security measures proportionate to the risk level, covering pseudonymization, encryption, system availability, and regular testing The article does not prescribe a fixed checklist. Organizations must assess the state of the art, implementation costs, processing scope, and risk severity to determine appropriate controls…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.