Skip to main content
All CollectionsData Protection
Data Protection at Candis
Data Protection at Candis

Data Security, DPA, TOMs

René Wasmuß avatar
Written by René Wasmuß
Updated over a week ago

From the careful selection of sub-service providers to technical and organizational measures to the ongoing training/sensitization of employees, Candis takes data protection seriously.

Here accordingly all important documents/information on the topic.

Official documents & information

Privacy Policy

Each customer acknowledges the privacy statements in the registration process.

You can also find it when you're logged in in Candis in your profile settings under privacy policy.

Data protection officer

Data protection officer in accordance with the Federal Data Protection Act:

Bitkom Servicegesellschaft mbH, Mr. Ali Tschakari

Contract Data Processing Agreement (DPA)

By using Candis, you commission Candis GmbH as a data processor. You can view and download the DPA here: https://candis.io/avv/

How Candis ensures the security of your data

Technical and organizational measures (TOMs)

Candis takes technical and organizational measures to protect data and continuously improves them in coordination with the appointed data protection officer.

Technical measures include, for example, end-to-end SSL encryption between the Candis data center and the browser. The data center itself is protected both technically and physically, data is backed up redundantly multiple times, and much more.

Organizational measures include, for example, strictly restricting access rights for Candis employees, professionally securing office space, and using complex passwords with regular changes.

You can find our TOM's in the Annex 1 of our Data Processing Addendum (candis.io/avv). Please note that the TOM's are only available in german right now.

Careful selection of partners & service providers

We work exclusively with reputable companies that also convince us of their own data protection precautions. In addition to shareholders such as the Commerzbank Group and interface partners such as DATEV, cooperation partners such as Berliner Sparkasse, these are primarily service providers such as

Gini (OCR & data extraction)

→ Participation of Deutsche Telekom

Further questions regarding data protection

Contact us in the chat on the bottom left or write to datenschutz@candis.io.

Did this answer your question?