Security Measures and Policies
Keep policies, guidelines and regulations central and continuously current. Record and maintain technical and organizational measures (TOMs) in accordance with Art. 32 GDPR in a structured manner and link them to processing activities and contracts – an ongoing, auditable process rather than one-off documentation.
Policies
Central Management of All Policies
Manage all policies, guidelines, regulations and procedural instructions centrally in preeco | data protection – as a living process rather than filed-away documents. Keep data protection policies, IT security policies, deletion policies or access regulations structured and current, with regular reviews and a seamless version history. This way your policies stay effective, findable and demonstrable at any time.
- Data protection policies and regulations
- IT security policies
- Deletion policies and access regulations
- Complete activity log
TOMs
Technical and Organizational Measures per Art. 32 GDPR
Document TOMs systematically by categories such as access control, authentication control, authorization control, transfer control, input control and encryption. AI-assisted content completion helps you formulate measures. Link TOMs to the processing activities they apply to – always audit-ready.
- Structured form per Art. 32 GDPR
- AI-assisted content completion
- Categorization by BSI or custom categories
- Linking to processing activities and contracts
- Automatic versioning and revision
Features
All Features at a Glance
From structured recording through versioning to export – all the tools for professional policy and TOM management.
Linking to Processing Activities
Link TOMs to processing activities. The system automatically shows which measures are implemented for which processing operations.
Filterable Overviews
All policies and TOMs in filterable overviews. Status, responsible persons, last update and links at a glance.
Automatic Revision on Approval
Upon approval or signing, an immutable revision (PDF/ZIP or HTML) is created automatically. Two revisions can be compared visually – additions in green, removals in red – and verified for integrity via stored SHA-256 checksums. Seamless revision history for accountability obligations under Art. 5(2) GDPR.
Context Features and Collaboration
Activity log, file attachments, tasks, comments, checklists and tags. The observer function automatically notifies relevant persons.
Export and Linked Documents
Export as PDF or DOCX. Linked documents for cross-tenant standardization.
Get started now
We will show you how preeco | data protection manages your policies and TOMs in a structured way.