$SFOR/ACS are following ISO 27001 that is used to implement adequate and effective security measures, based on the outcomes of a formal risk assessment & to comply with the
GDPR . Compliance deadline looming.... & where did we heard GDPR? Comply by May 25, 2018 else pay $25m fine per incident
https://docs.wixstatic.com/ugd/5870e3_9bdbf90...91fe14.pdf