Certificate according to ISO 27001 based on IT-Grundschutz for "Secure Cloud Infrastructure (SkIDentity)"
The "Secure Cloud Infrastructure (SkIDentity)", which is certified by the Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik, BSI) under the Certificate no. BSI-IGZ-0250-2016 is the reliable and trustworthy foundation for the highly secure operation of the innovative SkIDentity Service. The comprehensive security concept was thoroughly tested and certified by the BSI as part of the certification process according to ISO 27001 based on IT-Grundschutz. In addition to overarching aspects of security management according to ISO/IEC 27001, this security concept also includes specific security measures for a secure data center infrastructure, especially hardened IT systems, cryptographically protected networks, as well as a variety of security measures in the applications relevant to the highly secure operation of SkIDentity. The evaluated "Secure Cloud Infrastructure (SkIDentity)" provides a highly secure operating environment in which arbitrary Internet-based applications (cloud services) can run securely and use electronic identification (eID) documents for strong authentication. The certified IT network includes all the resources necessary for the secure operation and administration of Internet-based applications, such as central server systems with firewall, web server, application server and decentralized systems for administration as well as corresponding operating processes. Part of the evaluated platform is in particular the SkIDentity Service, which can be used by the applications running in the operating environment and by external cloud and web applications for strong authentication purposes.