At Alistar, we place a high priority on information security. Our customers can trust that we handle the processing and protection of (personal) data with the utmost care. To this end, we have implemented organizational and technical measures that are regularly audited and updated as needed in line with new technological developments and potential threats.
For more information, see the Alistar Privacy Policy.
Security Governance
Alistar operates in compliance with laws and regulations such as the GDPR and NIS2. To the extent possible, we assist customers subject to specific laws and regulations, such as DORA, in meeting the requirements they must impose on IT service providers. Financial entities subject to DORA may use the Alistar DORA Addendum applications.
Alistar has appointed a DPO and Information Security Officer(s) who monitor our privacy and security processes and respond to potential deviations and incidents.
LEI Codes
| Entity | LEI Code |
| Alistar Group B.V. | 699400RZQ3ZMNRFFA721 |
| Alistar Belgium B.V. | 6994001AQZGXAGZ6PH12 |
| Alistar Nederland B.V. | 98450058248567F67589 |
| GMI Group N.V. | 984500BA04ED66JBDC67 |
| NET IT B.V. | 984500A08D0C079FZ818 |
| SDP Retail BV | 9845009F4960018F2D46 |
Security Awareness
New employees are offered security awareness training as part of their onboarding program. This ensures that employees are aware of the potential risks involved in handling information and understand their responsibilities regarding information security. Each year, we administer a Security Awareness test to our employees to assess their level of knowledge and offer additional training where necessary. To keep employees alert to current threats, we conduct phishing tests among our employees.
Incident Management and Transparency
Alistar closely monitors technological developments and current threats. Unfortunately, there are always circumstances in which security incidents may occur. Alistar’s Incident Management process ensures that, in such cases, incidents are reported and addressed quickly and without delay. We believe transparency is important. This means that, to the extent relevant, we will inform you without unnecessary delay about incidents and their potential consequences.
Audits and ISO 27001 Certification
Alistar has an ISO 27001-certified ISMS (information security management system). Every year, independent accredited auditors assess the effectiveness of this system and the measures we have taken regarding information security. This results in an audit report. Findings from audits are addressed as necessary. A copy of the ISO certificate and a Statement of Applicability (VvT) are available at application available.