+49 6122 7071-0 info@kpc.de https://kundencenter.kpc.de/
Header Trade-In
Data protection, security and compliance in one solution

Certified, GDPR-compliant data destruction

KPC Secure offers certified procedures for the secure erasure and destruction of electronic data carriers – from data erasure in accordance with the manufacturer’s or BSI specifications to the physical destruction of data carriers in accordance with ISO/IEC 21964. In this way, we support companies in complying with the requirements of the GDPR and ISO 27001.

For your security and compliance

Methods of certified data destruction

From a data protection perspective, GDPR-compliant data destruction is essential. It requires the use of suitable and verifiably secure procedures for data erasure and data carrier destruction for all types of storage media.
Access to stored information must be permanently excluded, especially when selling, scrapping, returning or otherwise transferring IT and EDP systems.

Even defective data carriers often still contain sensitive data that can be reconstructed using specialized methods. For this reason, KPC Secure relies on certified methods in accordance with ISO 21964, which meet defined security levels and guarantee audit-proof destruction.
Below you will find the methods that we have been using successfully and in compliance with standards for our customers for many years.

Certificate and test certificate for ISO/IEC 21964

Secure and legally compliant software deletion

All data is securely and completely erased using specialized eraser software. This involves overwriting the stored information multiple times using standardized and recognized algorithms (e.g. DoD 5220.22-M, NIST SP 800-88) or random number procedures.
This method meets international data protection requirements as well as the legal requirements of the GDPR and the BDSG. Software erasure is particularly suitable for hard disks, SSDs, servers, mobile devices and external storage media that are subsequently to be reused or taken out of operation in a controlled manner. Once the erasure process is complete, a tamper-proof erasure report is created that contains all relevant information such as device identification, serial number, erasure status and timestamp and enables audit-proof documentation. The software used reliably detects defective sectors and erasure errors. In such cases, the data carrier can be sent for certified physical destruction in accordance with ISO/IEC 21964. This ensures a high level of security and traceability at all times. Software erasure is a sustainable alternative to physical destruction and is particularly suitable for companies that value resource-saving, legally compliant and documented data erasure.

Certified data carrier destruction up to protection class 3

The mechanical destruction of data carriers is carried out by controlled shaping and cutting in specialized shredder systems in accordance with ISO/IEC 21964 (formerly DIN 66399). Destruction is carried out at defined security levels depending on the type of data carrier and protection requirements. For electronic data carriers such as hard disks, SSDs, USB sticks and memory cards, we offer certified destruction in accordance with security level H4 (mechanical magnetic hard disks / HDDs, particle size 2000 mm²) and E4 (flash memory / SSDs, particle size 30 mm²). These security levels are designed for data carriers with high protection requirements and enable the standard-compliant destruction of sensitive and particularly sensitive data as defined by the GDPR and the BDSG. All data destruction is carried out taking into account the required protection class (1 to 3). An end-to-end security process is implemented for each protection class, covering all relevant organizational and technical requirements – from the transfer of data carriers to secure transport and controlled destruction. Unauthorized access is prevented during the entire process and destruction is carried out at our Wiesbaden site. All processes are documented, traceable and audit-proof.

Certified, GDPR-compliant data destruction

KPC Secure

Proper data erasure continues to be underestimated in many companies, as there is often a lack of clear processes, binding standards or comprehensible documentation. The destruction of electronic data is a central component of data protection and compliance and – depending on the need for protection and the type of data carrier – must be carried out using a process that meets the legal requirements and the actual security risk.

Regardless of whether IT equipment, external or mobile storage media are sold, scrapped, returned or otherwise passed on, access to stored data must be reliably excluded at all times. It is often underestimated that even defective data carriers still contain sensitive information that can be read or reconstructed using specialized methods and therefore represent a significant data protection and security risk.

With the “KPC Secure” service, our trained personnel offer you reliable and secure procedures for destroying confidential data. We use software deletion, degaussing and the physical destruction of data media by shredding in accordance with ISO/IEC 21964 (formerly DIN 66399). Shredding is carried out exclusively at our Wiesbaden site and is embedded in a documented, audit-proof security process.

Rely on proven, certified processes and controlled data destruction with sustainable recycling. Request your individual concept now – data protection-compliant, audit-proof and reliable.

Dispose of data securely now - with KPC Secure.

Rely on proven, certified processes and controlled data destruction with sustainable recycling. Request your individual concept now – data protection-compliant, audit-proof and reliable.

Important information
What needs to be considered?

From a data protection perspective, it is essential to use a secure data erasure process for all types of data storage media. Find out more about the current requirements and options for GDPR-compliant data destruction and erasure in our free white paper.

Answers to the most important questions about secure data erasure and physical destruction.

FAQ - Frequently asked questions about KPC Secure

Which deletion methods are offered?

KPC Secure offers software erasure, degaussing and physical data carrier destruction by shredding in accordance with ISO/IEC 21964 – each tailored to security requirements and data carrier type.

Do I get deletion certificates?

Yes – each erasure process is documented individually. You will receive an erasure certificate as a PDF with details of the data carrier, serial number, method and date.

Is data deletion also possible on site?

No – data erasure and data carrier destruction are carried out exclusively as part of a controlled process at our site in Wiesbaden. In this way, we ensure consistently secure, documented and audit-proof implementation.

Is KPC Secure suitable for lease returns?

Absolutely – especially in combination with KPC Trade-In or ITAD projects.

Which standards are met?

KPC Secure’s services are designed to support companies in complying with legal and normative requirements. These include, in particular, the GDPR, BSI IT baseline protection and requirements from ISO 27001 and NIS2.
The physical destruction of data carriers is also carried out in accordance with ISO/IEC 21964 and thus ensures that the technical requirements for secure data destruction are implemented in compliance with standards.

What happens to the devices after they are deleted?

If desired, they can be recycled or reused via KPC Trade-In.

Rainer Waiblinger

Your contact person

Rainer Waiblinger

CTO

There is a clever solution for every technical challenge - let us advise you and find the optimum solution.

Nach oben scrollen