The mission of the Center for eHealth Applications and Services (CeHA) is to provide services and products that ensure the integrity and security of its users' data with particular importance to the health data hosted on its systems..
To serve the aforementioned purpose, the management of CeHA recognizes the risks that threaten the Information Security and are produced and handled in the context of the Center’s activities, and provides all the necessary resources in order to apply an Information Security Management System in accordance with the international standard ISO 27001:2013. In addition, CeHA extends the Information Security Management System according to the requirements of ISO 27799: 2016 in order to protect health systems and information.
For this reason, CeHA implements an Information Security Policy, aiming at:
The commitment to Information Security, which results to avoid incidents that can affect the Information Security, is implemented through the following individual steps:
The Information Security Policy applies to both the permanent staff of the Center and the temporary staff (researchers, interns, etc.). In addition, it applies to external partners who have or may have access to systems and applications with health data. The above commitment is reflected in a confidentiality agreement that is signed at the start of cooperation with staff and external partners.
The Center is committed for trying the continual improvement of the Information Security Management System in order to offer high levels of information security to all involved.