Compliance & Information Security Statement
DroneMissions is developed and managed by InforDB B.V. (https://www.infordb.com), a Dutch software provider that is ISO/IEC 27001 certified. Information security, privacy, and continuity are structural components of our business operations and of the development and management of DroneMissions.
InforDB B.V. operates a certified Information Security Management System (ISMS) in accordance with ISO/IEC 27001. Within this ISMS, information security risks are structurally identified, assessed, and managed.
This includes, among other things, policies and measures for access and authorization management, secure software development, change management, logging and monitoring, incident management, backup and recovery, vulnerability and patch management, supplier management, and business continuity. The effectiveness of these measures is periodically assessed both internally and externally.
Data within DroneMissions is hosted in the Netherlands and therefore remains within the European Union. Consequently, the processing and storage of data fall under the applicable European laws and regulations regarding data protection and privacy.
The production environment is housed in a professional Dutch data center and utilizes redundant infrastructure, including redundant power supply and network connectivity. Backup and recovery facilities are in place to ensure the availability and recoverability of data and services in the event of disruptions.
Access to systems and customer data is restricted to authorized users and processes. Appropriate measures for authentication and authorization are applied in this regard.
DroneMissions supports Single Sign-On (SSO) via Microsoft. This allows organizations to align access management with their existing Microsoft identity environment. Furthermore, the organization’s own security policies can be applied, including Multi-Factor Authentication (MFA) and, where configured, additional access conditions.
InforDB B.V. acts in accordance with the General Data Protection Regulation (GDPR). When InforDB B.V. processes personal data on behalf of a customer, agreements regarding this are established in a Data Processing Agreement (DPA).
This agreement may include provisions regarding the nature and purpose of the processing, confidentiality, technical and organizational security measures, security incidents and data breaches, retention periods, and the deletion of data.
For business customers, agreements regarding availability, support, incident handling, and continuity, among other things, can be established in a Service Level Agreement (SLA).
InforDB B.V. also maintains procedures for business continuity, incident management, backup, and recovery. Additionally, a SaaS escrow arrangement is in place to safeguard the continuity of the software and services under predefined circumstances.
Information security is part of the full lifecycle of DroneMissions: from design and development to testing, release, and management. Security risks are periodically assessed within the ISMS and, where necessary, translated into technical or organizational measures.
DroneMissions thus combines Dutch/EU hosting, ISO 27001-certified information security, GDPR-compliant data processing, secure authentication options, and measures for technical and organizational continuity.
For organizations with additional requirements regarding security, privacy, or compliance, InforDB B.V. can provide further documentation and contractual agreements.
InforDB B.V.
Netherlands | ISO/IEC 27001 certified
Compliance & Information Security Statement – DroneMissions