Continue reading on DataGuidance with:
Free Member
Limited ArticlesCreate an account to continue accessing select articles, resources, and guidance notes.
Already have an account? Log in
Estonia: RIA publishes starting measures of E-ITS
On July 25, 2024, the Information System Authority (RIA) announced that it put together a set of starting measures of the Estonian Information Security Standard (E-ITS), which outlines the important first steps that must be carried out to implement information security measures. The starting measures aim to help companies that have not dealt with information security and do not have to meet the requirements of the Cyber Security Act but want to protect their business and customer data.
The starting measures outline a number of measures which include:
- initiating information security management processes at the top level of management;
- establishing an organization-wide information security policy;
- appointing an information security manager;
- integrating employees into security processes;
- having password quality requirements; and
- establishing a procedure for reporting security incidents.
RIA notes that the implementation of these starting measures is a good start but is not sufficient to consider that requirements are fulfilled.
You can read the press release here and access the starting measures here, both only available in Estonian.