GDPR Compliance letter

You might also like

Download as pdf or txt
Download as pdf or txt
You are on page 1of 2

Matrix Comsec Pvt. Ltd.

Date: 22nd March 2024


Vadodara
India

GDPR Compliance

Shieldbyte Infosec Pvt. Ltd. (Shieldbyte Infosec) an independent information security and data
privacy compliance and audit company has reviewed and audited Matrix Comsec Pvt. Ltd. (Matrix
Comsec) for GDPR compliance. The assessment and audit were carried out at Matrix Comsec to
review Data Governance Framework and GDPR-compliant privacy practices.

Audit Scope Matrix Comsec Software Platforms

▪ COSEC CENTRA - Web-enabled application server(On-Premise) for People Mobility


Management
▪ COSEC VYOM - Cloud-based(SaaS) solution for People Mobility Management

Scope of GDPR Compliance

▪ Assessment or compliance review against GDPR Regulations


▪ GDPR Implementation Support based on business areas that included data mapping, data
inventory and determining lawful basis, consent formats, etc.
▪ Review and assessment of data necessity, use of data retention and disposal, and
including disclosure to third parties.
▪ Implementation of Privacy Policies and procedures including DPIA, Breach Response Plan,
Data Subject rights

Audit Methodologies

▪ Discussions and interviews with the management


▪ Review and assessment of information security and data privacy controls
▪ Review of documents, policies, and procedures
▪ Walkthrough of business processes and systems

Organization’s Responsibilities

In connection with the GDPR compliance, Matrix Comsec was responsible for providing
information through a GDPR Assessment regarding its GDPR compliance practices and
demonstrating supporting evidence.

GDPR COMPLIANCE PAGE 1 OF 2


Restricted Use

This GDPR compliance letter and audit report is for the intended use of Matrix Comsec –

▪ This compliance letter, audit Report, and any Summary, provided by Shieldbyte Infosec
may be used by the Matrix Comsec until the expiration date listed below.
▪ This GDPR Compliance Letter can be shared with the Organization’s customers,
contractors, and other stakeholders until the expiration date.
▪ This GDPR Compliance Letter and audit report are valid till 21st March 2025.

Conclusion and Findings

In our opinion, in all material respects, based on the descriptions and supporting evidence of
practices-level measures identified in Matrix Comsec’s GDPR Audit:

▪ The applicable practice-level measures as further described in the accompanying


validation report have been implemented as of 22nd March 2024.
▪ The measures described in the GDPR Audit report were suitably designed to provide
reasonable assurance of GDPR compliance as of 22nd March 2024.

Based on audit assessment and findings Matrix Comsec Pvt. Ltd. is GDPR compliant as of 22nd
March 2024.

Vaishali Mutalik
Principal Auditor
CISA, CISM, CDPSE, CRISC, CPISI, GDPR

GDPR COMPLIANCE PAGE 2 OF 2

You might also like