Security

Your data is secure

Top-level information protection. Secure data management, biometric signing, and encryption in a data center in the Netherlands.

Certifications & compliance

Certified at every step

eIDAS certification

eIDAS

EU electronic signature regulation

GDPR certification

GDPR

Personal data protection

ISO/IEC 27001 certification

ISO/IEC 27001

Information security management standard

The highest level of data protection

We are an IT company that prioritizes data security as one of our top operational concerns. To ensure the highest level of information security, we adhere to strict security standards in both our internal processes and when collaborating with partners. Our goal is to establish a trust-based collaboration that ensures your business’s safety.

Implemented ISO/IEC 27001 standard for information security management systems

Certification under the ISO/IEC 27001 standard ensures the confidentiality, integrity, and security of information within an organization by applying structured and strict security management measures. This standard helps effectively manage risks and prevent potential information security breaches. Additionally, the ISO/IEC 27001 certificate contributes to compliance with the General Data Protection Regulation (GDPR).

Certification covers Zebracloud’s IT solutions: customer service, business process digitalization, electronic document management, and related system development, implementation, maintenance, administration, and consulting.

Compliance with ISO/IEC 19794-7:2021 Standard

During biometric signing with ZebraSign, detailed biometric signature data – coordinates, speed, time, and distance measurements – are recorded to ensure signature authenticity and document integrity. All data is processed and stored in compliance with the ISO/IEC 19794-7:2021 standard, making it suitable for expert analysis in court if needed.

eIDAS regulation compliance

eIDAS is an EU regulation that sets unified standards for electronic identification, authentication, and trust services. It aims to enable secure, reliable, and legally recognized digital collaboration across the EU. The regulation ensures that electronic signatures and other trust services are recognized across borders, reduces administrative burden, and helps businesses and organizations operate more efficiently in the digital space.

Our services fully comply with eIDAS requirements, meaning both qualified and advanced electronic signatures created on the ZebraSign platform are legally recognized throughout the European Union.

Data Storage in a certified data center

For client data storage, we have chosen one of the most advanced and reliable data centers in the Netherlands, which meets the highest international standards. The data center operator is certified under ISO 9001 (quality management), ISO 22301 (business continuity), ISO 27001 (information security management), SOC 2 (data security and privacy), and PCI-DSS (payment data protection) requirements.

Amsterdam, as a major European internet hub, offers excellent IT infrastructure: fast and stable internet connectivity, access to renewable energy, efficient cooling solutions, and advanced telecommunications. These factors enable secure, efficient, and sustainable data management.

Backups and encryption for your data security

To ensure maximum data security, we regularly perform systematic backups in cloud infrastructure and local servers. These measures effectively protect against data loss due to technical failures or human error. All backups are encrypted using a secure SHA256 key, so even if backups are leaked, their content remains inaccessible to unauthorized persons.

Personal data processing according to GDPR

When using the ZebraSign platform and its services, you entrust us with your data. In processing this data, we comply with the General Data Protection Regulation (GDPR), the Law on Legal Protection of Personal Data of the Republic of Lithuania, the Law on Electronic Communications, and other applicable legal acts. We also follow the guidance of competent supervisory authorities.

When acting as a data processor, we follow the terms of the Personal Data Processing Agreement concluded with you. We ensure that the security measures applied meet at least the requirements set by GDPR.

Ready to say goodbye to paper?

Contact us and we'll find the best digitalization solution for your organization.