Security you can verify. Compliance you can read.

Scope first, control at every step, and the full legal and compliance picture in one place, written plainly.

01 / CNDP · 09-08

Personal-data protection

Scope the engagement around applicable personal-data obligations: purpose, access, retention, and CNDP formalities. Review cross-border transfers before choosing where evidence is hosted or who receives it.

CNDP guidanceCross-border transfers
02 / DGSSI · 05-20

Applicable cybersecurity requirements

For entities in scope and sensitive information systems of critical infrastructure, assess Law 05-20 and its implementing requirements. Continuous validation does not replace a regulated audit that requires a DGSSI-qualified provider.

DGSSI guidance

Applicable requirements depend on your organization and the proposed processing. These scoping considerations are not a certification or a guarantee of compliance.

Discuss your scope