New Data security audit at target (2020)

An independent auditor confirms that target has implemented and continuously improved its data security requirements.

The independent auditor confirms that target has implemented and continuously improved the data security requirements.

Data protection has been a very high priority for all employees at target since the appointment of the data protection officer in 2016. As a contractor of project and maintenance services, target comes into contact with personal data in many cases. In the terminology of the General Data Protection Regulation (GDPR), we are therefore processors.

We want to and must continue to ensure a high level of data security when processing personal data in order to protect the trust that our customers place in us.

All employees at target are sensitised to the topic of data security through regular, mandatory training. In addition, we are audited annually by an independent body to determine whether the required standards are met.

The 2020 audit, which was delayed until the end of the year due to the pandemic, builds on the 2019 report and includes adjustments that have been implemented since that report. The current audit is valid until the end of 2021 and takes into account the audit of critical aspects of data security.

On the one hand, the role of target Software Solution GmbH as a processor was examined more closely. Thus, one focus was on the audit of the automated IT processes and their documentation.

In 2020, target is again independently certified as having a good result. It says: "... Essential requirements and suggestions for improving the individual points were examined and - where possible - implemented. Due to the implemented measures, a clear improvement of the rating was achieved. Individual areas have to be reviewed regularly due to the constant changes in the systems and will therefore be part of the audit again in the coming year (2021) ..."

Among other things, the technical organisational measures (TOM) were examined, in detail for the sub-areas of admission and entry control, access control, data carrier control, storage control, user control, transmission / transport control, input control, recoverability / reliability / availability, data integrity, order control and evaluation / monitoring and organisational control.

Measures were defined and implemented with our data protection officer for each of the aforementioned sub-areas of data security. Further contingency plans were developed and the  directories of procedures were completed.

Another focus was the review of the contracts for commissioned processing with critical service providers and their TOM. A Controller Processor Agreement exists between these service providers and target in accordance with the current specifications of the Gesellschaft für Datenschutz und Datensicherheit e. V. (GDD). target ensures that the service providers are carefully selected with regard to data security. The data security measures of critical service providers are checked every 12 months at the latest, of other service providers every 24 months.

At target, data protection and data security is a topic that is treated with high priority and is continuously developed - depending on the technical possibilities.

News 1/1/22

New shareholder structure at target Software Solution GmbH

Hanno Hofmann, founder of Walldorf Consulting AG, acquires all shares in target Software Solution GmbH.

Security, Identity & Access Management
Service

Security, Identity & Access Management

Time and again we hear about hacker attacks on companies that target sensitive company data. Therefore, security and access control of data must never be neglected.

Referenz

vdek introduces new Data Warehouse solution

The TIMETOACT GROUP supports the Verband der Ersatzkassen e. V. in the switch from a system environment to the latest IBM technology.

News 7/10/22

New target Idea Management Release SVP 10 is now available

The new release offers numerous advantages. Among them: Even better user interface made possible by SAP Fiori 3!

News 6/17/22

The new target Idea Management Release SVP 9 is now availabl

The new SVP 9 release of our on-premise software target Idea Management offers numerous advantages. The highlight: complete workflow mapping with Fiori apps!

Blog

Guest Blog: Data Scientists at the TIMETOACT Hackathon

Three data scientists share their experience at the TIMETOACT Hackathon, tackling logistics simulation challenges with strategies balancing profit and sustainability.

Articifial Intelligence & Data Science
Service

Artificial Intelligence & Data Science

Data Science is all about extracting valuable information from structured and unstructured data.

Analytics und Business Intelligence
Service

Analytics & Business Intelligence

Analytics & Business Intelligence has become increasingly important in recent years.

Headerbild zu Smart Insurance Workflows
Service

Smart Insurance Workflows

Using a design thinking approach, we orient workflows to the customer experience and design customer-centric end-to-end processes.

Standort

Location in Stuttgart

Find catworkx GmbH and novaCapta GmbH in Stuttgart; Olgastraße 15; 70182 Stuttgart; Tel: +49 711 77940 0; Fax: +49 711 77940 19: Mail: info.stuttgart@novacapta.de

Standort

Location in Augsburg

Find novaCapta GmbH in Augsburg: Schertlinstraße 19, 86159 Augsburg, +49 821 789 887 90, info.augsburg@novacapta.de

Headerbild Data Insights
Service

Data Insights

With Data Insights, we help you step by step with the appropriate architecture to use new technologies and develop a data-driven corporate culture

Standort

Location in Vienna

Find the catworkx GmbH, CLOUDPILOTS Software & Consulting GmbH, IPG Information Process Group Austria GmbH and TIMETOACT GROUP Österreich GmbH in Vienna

Standort

Location in Hannover

Find novaCapta GmbH and PKS Software GmbH in Hannover: Heiligerstraße 7, 30159 Hanover

Headerbild zu Digitalem Ökosystem
Service

Fit for the digital ecosystem

Insurers are digitally networking with their ecosystem to gain critical capabilities in a division of labor. Personal data, object data are securely exchanged via common digital interfaces.

Standort

Location in Cologne

Find us on site in Cologne: catworkx, CLOUDPILOTS, IPG, novaCapta, synaigy, TIMETOACT, X-INTEGRATE: Im Mediapark 5; 50670 Cologne, Germany

Standort

Location in Ravensburg

Find PKS Software GmbH in Ravensburg: Georgstraße 15; 88214 Ravensburg; Tel.: +49 751 56140 0; Mail: info@pks.de

News 1/26/21

The IPG Group becomes part of the TIMETOACT GROUP

The TIMETOACT GROUP acquires the majority of the shares of IPG Information Process Group Holding AG, based in Winterthur. Through the acquisition, the competencies for Identity and Access Management (IAM) solutions in the DACH market are combined.

Logo von IPG - Experts in IAM
Unternehmen 1/26/21

IPG Information Process Group Holding AG

IPG Group specializes in the design, integration, operation and training of IAM solutions.

Headerbild zur Logistik- und Transportbranche
Branche

AI & Digitization for the Transportation and Logistics Indus

Digitale, transparente Prozesse und automatisierte Optimierung helfen Logistikunternehmen, Kosten und Leistung besser auszubalancieren, für eine starke, zukunftsfähige Rolle als Partner der Wirtschaft

Bleiben Sie mit dem TIMETOACT GROUP Newsletter auf dem Laufenden!