CBI works throughout the EMEA region and are compliant in all areas of local legislation. Some compliance documents can be viewed from this section, and further information for any location where CBI works can be made available upon request.
European Union (EU)
Act: Directive 95/46/EC
Directive 95/46/EC of the European Parliament and of the Council of 24 October 1995 on the protection of individuals with regard to the processing of personal data and on the free movement of such data.
ISO 9000
ISO 9000 is maintained by the International Organization for Standardization and is administered by accreditation and certification bodies. Some of the requirements in ISO 9001 (which is one of the standards in the ISO 9000 family) would include:
- A set of procedures that cover all key processes in the business;
- Monitoring processes to ensure they are effective;
- Keeping adequate records;
- Checking output for defects, with appropriate corrective action where necessary;
- Regularly reviewing individual processes and the quality system itself for effectiveness; and
- Facilitating continual improvement.
United Kingdom
BS7858:2004
BS7858:2004: Security, Personnel, Personnel management, Anti-burglar measures, Security systems in buildings, Data security, Contracting, Management, Recruitment, Contracts, Service contracts, Records (documents), Verification, Conditions of employment.
ISO 9000
Data Protection Act of 1998
The 1998 Data Protection Act came into force early in 1999 and covers how information about living identifiable persons is used. It is much broader in scope than the earlier 1984 act, but does contain some provision for a transitional period for compliance with the new requirements.
The act covers eight 'Data Protection Principles', which are detailed in this section.
Ireland
IS999:2004
The standard provides a specification for those aspects related to guarding security services of a company or body providing static and/or mobile guarding security services, with a view to enhancing the quality of such services and thus improving the protection of items in their trust.
ISO 9001
Compendium of Data Protection Acts of 1988 and amended 2003
Compendium of data protection acts 1988 and amended 2003 to give effect to directive 95/46/EC of the European Parliament and of the Council of 24 October 1995 on the protection of the individual with regard to the processing of the personal data and on the free movement of such data, for that purpose to amend the Data Protection Act 1988 and to provide for related matters [10 April 2003].
Poland
Article 23.1.1 of Polish Act of 29 August 1997
Article 23.1.1 of Polish Act of 29 August 1997 on Personal Protection of Data, amended in 2004.
Name of supervisory authority: General Inspector for the Protection of Personal Data.
ISO 9001
Germany
Federal Data Protection Act
Federal Data Protection Act (Bundesdatenschutzgesetz -BDSG) 2001.
Name of supervisory authority: Federal Data Protection Commissioner.
ISO 9001
France
Law 2004-801 of 6 August 2004
Law 2004-801 of 6 August 2004 modifying law 78-17 of 6 January 1978 relating to the Protection of Data Subjects as Regards the Processing of Personal Data (in French).
Name of supervisory authority: Commission Nationale de l' Informatique et des Libertes (CNIL) (National Commission of Information and Freedom).
ISO 9001
Slovakia
Coll. on Protection of Personal Data
Coll. on Protection of Personal Data (English consolidated version).
Name of supervisory authority: Office for Personal Data Protection.
ISO 9001
More compliance and quality assurance data can be made available upon request.