ClientsAssessments
Client Assessment
We perform an extensive client assessment on our clients, prior to them becoming a paying customer, to ensure they have the appropriate capabilities and competencies to obtain certain credentials. This assessment is therefore different for the various tiers of clients, as not all tiers are allowed to process sensitive data.
Topics
Key topics assessed in the client assessment include, but are not limited to:
- Maturity of organization. What is the internal control environment of the client?
- Scope. Are the requested attributes in line with what the organization is capable of requesting, safeguarding and required to provide their service or deliver their product?
- Issuing or verification. Is the client an Issuer or a Relying party? Or both?
- Privacy officer. Does the client have a Privacy officer in place that ensure compliancy to GDPR and other data protection legislation?
- Sensitive attributes. If a client requires or requests the BSN, or national identity number, does it have the legal grounds to process this BSN? We verify if the RP is listed on the 'Autorisatielijst BSN-gerechtigden'.
Regulation and legislation
Regulations and legislation are continuously monitored (such as eIDAS2.0, GDPR, etc.), to ensure the assessment is up to date to meet the requirements.
Reevaluation
All clients are re-assessed on a yearly basis to monitor for changes and updates that potentially require additional procedures.