Certifications

SCASSI is PASSI (Information Systems Security Audit Service Provider) qualified since March 31, 2017 and PASSI-LPM since 12/03/2020 on all scopes:

Architecture audit

Configuration audit

Source code audit

Penetration tests

Organizational and physical audit

The PASSI qualification validates the competence of SCASSI and its auditors and signifies that SCASSI has the necessary mandate from ANSSI to intervene on the critical systems of Operators of Vital Importance (OIV) within the framework of the Military Programming Law (LPM) ). It guarantees the processing and protection of your data in accordance with the requirements formulated by ANSSI (https://ssi.gouv.fr).

Part of SCASSI's activities consists of meeting the needs of its customers on sensitive activities bearing a protective mention "RESTRICTED DIFFUSION", abbreviated "DR", governed by interministerial instruction n ° 901 (Document II 901).

As such, SCASSI has an infrastructure and processes documented in our General Security Policy (PSSI SCASSI) taking into account the protection of information bearing this mention on all plans and allowing the intramural performance of these specific missions:

DR information system in accordance with current legislation

Human resources empowered and trained.

Management of physical and logical access.

Secure IS operating procedures

Use of approved encryption tools.

Incident management

These elements allow us in particular to carry out qualified PASSI or PASSI LPM audits, but also to carry out projects that process sensitive data of this type.