ANNEXTechnical specifications and procedures

3.Security standards

For the communication and distribution of information via BRIS, the technical measures for ensuring minimum information technology security standards shall include:

  1. (a)

    measures to ensure confidentiality of information, including by using secure channels (HTTPS);

  2. (b)

    measures to ensure the integrity of data while being exchanged;

  3. (c)

    measures to ensure the non-repudiation of origin of the sender of information within BRIS and the non-repudiation of receipt of information;

  4. (d)

    measures to ensure logging of security events in line with recognized international recommendations for information technology security standards;

  5. (e)

    measures to ensure the authentication and authorisation of any registered users and measures to verify the identity of systems connected to the portal, the platform or the registers within BRIS.