Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

199 total results found

Does Cyber Crucible comply with Brazil's LGPD?

International Vendor-Risk Guides

Short answer: Cyber Crucible supports a controller's obligations under Brazil's Lei Geral de Proteção de Dados (LGPD) as an operator (processor) that processes on the endpoint and collects no customer content, credentials, or keys. Most LGPD obligations — lega...

Type
FAQ
Source
International Vendor-Risk Guides

Does Cyber Crucible comply with Switzerland's revised FADP?

International Vendor-Risk Guides

Short answer: Cyber Crucible supports a Swiss organization's obligations under the revised Federal Act on Data Protection (revFADP) by minimizing data and processing locally on the endpoint. Because it collects no customer content, credentials, or keys, the se...

Type
FAQ
Source
International Vendor-Risk Guides

Does Cyber Crucible comply with New Zealand's Privacy Act 2020?

International Vendor-Risk Guides

Short answer: Cyber Crucible supports a New Zealand agency's obligations under the Privacy Act 2020 by collecting no customer content, credentials, or keys and processing on the endpoint. The Information Privacy Principles — particularly storage and security (...

Type
FAQ
Source
International Vendor-Risk Guides

Does Cyber Crucible support South Korea's PIPA?

International Vendor-Risk Guides

Short answer: Cyber Crucible supports an organization's obligations under South Korea's Personal Information Protection Act (PIPA) — one of the stricter regimes globally — by minimizing data and processing on the endpoint. It collects no customer content, cred...

Type
FAQ
Source
International Vendor-Risk Guides

Does Cyber Crucible comply with Turkey's KVKK?

International Vendor-Risk Guides

Short answer: Cyber Crucible supports a data controller's obligations under Turkey's Law on the Protection of Personal Data (KVKK) by collecting no customer content, credentials, or keys and processing on the endpoint. Registration, security, and transfer obli...

Type
FAQ
Source
International Vendor-Risk Guides

Which EU rules affect selecting a security vendor, beyond GDPR?

European Union & Member-State Vendor-Ri...

Short answer: Beyond the GDPR, three EU regimes increasingly shape vendor selection: DORA (operational resilience for financial entities and their ICT providers), NIS2 (cybersecurity obligations for essential and important entities, including supply-chain secu...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible support EU financial entities under DORA?

European Union & Member-State Vendor-Ri...

Short answer: Cyber Crucible is an ICT third-party service provider in DORA terms, and it supports a financial entity's DORA obligations — contractual controls, incident information, and resilience testing — while reducing ICT third-party risk because it never...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible support NIS2 obligations for essential and important entities?

European Union & Member-State Vendor-Ri...

Short answer: For an organization classified as an essential or important entity under NIS2, Cyber Crucible supports the required risk-management measures — endpoint protection, access control, encryption, and incident handling — and supports the directive's s...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible relate to the EU AI Act?

European Union & Member-State Vendor-Ri...

Short answer: Cyber Crucible uses AI only during development (its Genetic AI discovery work) and runs fixed, deterministic heuristics at runtime — there is no live AI model making decisions on the customer's endpoint. So Cyber Crucible does not place a high-ri...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible support data protection and security requirements in Germany?

European Union & Member-State Vendor-Ri...

Short answer: In Germany, Cyber Crucible supports an organization's obligations under the GDPR and the Federal Data Protection Act (BDSG) by collecting no customer content, credentials, or keys and processing on the endpoint. For organizations in scope of Germ...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible support data protection requirements in France?

European Union & Member-State Vendor-Ri...

Short answer: In France, Cyber Crucible supports an organization's obligations under the GDPR and the Loi Informatique et Libertés (enforced by the CNIL) by minimizing data and processing locally. Because it collects no customer content, credentials, or keys, ...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible support data protection requirements in Ireland?

European Union & Member-State Vendor-Ri...

Short answer: In Ireland, Cyber Crucible supports an organization's obligations under the GDPR and the Data Protection Act 2018 (enforced by the Data Protection Commission) by collecting no customer content, credentials, or keys and processing on the endpoint....

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible support data protection requirements in the Netherlands?

European Union & Member-State Vendor-Ri...

Short answer: In the Netherlands, Cyber Crucible supports an organization's obligations under the GDPR and the Dutch GDPR Implementation Act (enforced by the Autoriteit Persoonsgegevens) by minimizing data and processing on the endpoint. It collects no custome...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible support data protection requirements in Spain?

European Union & Member-State Vendor-Ri...

Short answer: In Spain, Cyber Crucible supports an organization's obligations under the GDPR and the Organic Law on Data Protection (LOPDGDD, enforced by the AEPD) by collecting no customer content, credentials, or keys and processing locally. Because there is...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible support data protection requirements in Italy?

European Union & Member-State Vendor-Ri...

Short answer: In Italy, Cyber Crucible supports an organization's obligations under the GDPR and the Italian Privacy Code (enforced by the Garante) by minimizing data and processing on the endpoint. It collects no customer content, credentials, or keys, so mos...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible support data protection requirements in Poland?

European Union & Member-State Vendor-Ri...

Short answer: In Poland, Cyber Crucible supports an organization's obligations under the GDPR and the Polish Personal Data Protection Act (enforced by the UODO) by collecting no customer content, credentials, or keys and processing on the endpoint. The minimal...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

How does Cyber Crucible support data protection requirements in Sweden and the Nordics?

European Union & Member-State Vendor-Ri...

Short answer: In Sweden and the wider Nordic region, Cyber Crucible supports an organization's obligations under the GDPR and national implementing laws (in Sweden, enforced by the IMY) by minimizing data and processing on the endpoint. Because it collects no ...

Type
FAQ
Source
European Union & Member-State Vendor-Risk Guides

Are companies overreacting about AI risk, or is it a visibility problem?

Video Explainers

Short answer: Most organizations are not overreacting to AI risk—they simply lack real visibility into how AI tools are actually being used across their environment. Without that visibility, the safest assumption is that current risk is being underestimated, n...

Type
FAQ
Source
Video Explainers