This DPA applies to the processing of personal data by Soft-Master LTD on behalf of the Client within the scope of providing IaaS services.
Group Compliance Disclosure: Soft-Master LTD operates its information security and privacy management systems (ISMS/PIMS) in coordination with SDefender, a specialized security entity within our corporate group. All infrastructure security, data protection controls, and regulatory compliance (including ISO 27001 and ISO 27701) are managed and maintained by SDefender on behalf of Soft-Master LTD.
Soft-Master LTD hereby commits to:
Soft-Master LTD will assist the Client, insofar as possible, in fulfilling their obligation to respond to requests from individuals exercising their rights (access, deletion, correction) under GDPR or Israeli law. Since the Provider has no direct access to the Client's databases, the Client remains responsible for executing these actions within their systems.
In the event of a confirmed data breach within the infrastructure managed by Soft-Master LTD, the Provider will notify the Client without undue delay and provide reasonable assistance in investigating and mitigating the incident.
Soft-Master LTD shall make available to the Client information necessary to demonstrate compliance with these obligations. This is primarily fulfilled by providing evidence of valid ISO 27001 and ISO 27701 certifications and, where applicable, infrastructure security logs (Syslog).
Upon termination of services, Soft-Master LTD shall, at the choice of the Client, delete or return all account-related personal data, unless applicable law requires continued storage. Data within the Client’s virtual instances is deleted automatically upon decommissioning of the service.