Support Centre

You have out of 5 free articles left for the month

Signup for a trial to access unlimited content.

Start Trial

Continue reading on DataGuidance with:

Free Member

Limited Articles

Create an account to continue accessing select articles, resources, and guidance notes.

Free Trial

Unlimited Access

Start your free trial to access unlimited articles, resources, guidance notes, and workspaces.

Estonia: RIA publishes starting measures of E-ITS

On July 25, 2024, the Information System Authority (RIA) announced that it put together a set of starting measures of the Estonian Information Security Standard (E-ITS), which outlines the important first steps that must be carried out to implement information security measures. The starting measures aim to help companies that have not dealt with information security and do not have to meet the requirements of the Cyber Security Act but want to protect their business and customer data.

The starting measures outline a number of measures which include:

  • initiating information security management processes at the top level of management;
  • establishing an organization-wide information security policy;
  • appointing an information security manager;
  • integrating employees into security processes;
  • having password quality requirements; and
  • establishing a procedure for reporting security incidents.

RIA notes that the implementation of these starting measures is a good start but is not sufficient to consider that requirements are fulfilled.

You can read the press release here and access the starting measures here, both only available in Estonian.