Setting the Standard for Secure Data Protection Services
We at the National Association for Secure Data Destruction are dedicated to prioritizing the protection of your sensitive information.
Industry Benchmark
Our program sets the standard for secure, compliant, and sustainable data destruction.
Protection Priority
We help businesses and organizations prioritize the protection of sensitive information.
Achieve Compliance
Our certification levels are designed to meet the rigorous demands of regulatory bodies.
Eco-Conscious Solutions
We integrate sustainable practices into our certification process.
Verifying Eligibility for Tiered Certification
Updates to the Evaluator Checklist to incorporate the tiered certification levels into the NASDD Evaluator Checklist, add a new section to verify the criteria for Copper, Silver, Gold, and Platinum levels. Here is a proposed addition: Section 6: Certification Level Verification Objective: Confirm eligibility for Copper, Silver, Gold, or Platinum certification based on years in business and 5-star Google reviews.
| Criteria | Requirements | Status (C/PC/NC) | Notes/Evidence |
|---|---|---|---|
| Years in Business | Copper: 5+ years Silver: 10+ years Gold: 15+ years Platinum: 20+ years No major legal/regulatory violations (e.g., data breaches, environmental fines). | Verify business registration, licenses, and legal records (e.g., no violations in the past 5 years). | |
| 5-Star Google Reviews | Copper: 25+ Silver: 50+ Gold: 100+ Platinum: 150+ Reviews must be verifiable on Google My Business. | Review Google My Business profile, screenshot review count, and verify authenticity. | |
| Client Feedback Integrity | No evidence of manipulated or fraudulent reviews (e.g., paid reviews, fake accounts). | Cross-check reviews with client interviews or third-party verification tools |
NASDD Certification Program ConstitutionPreamble
The National Association for Secure Data Destruction (NASDD) establishes the NASDD Certification Program to promote excellence, security, and accountability in the data destruction industry. This program ensures certified organizations uphold rigorous standards for protecting sensitive information, complying with legal requirements, fostering client trust, and prioritizing sustainability through tiered certification levels.
Mission:
- Certify organizations demonstrating superior practices in secure data destruction.
- Ensure compliance with data protection laws, including HIPAA, FACTA, GDPR, and regional regulations.
- Promote sustainable practices with a 90% recycling target.
- Build client confidence through transparent, tiered certifications reflecting experience and reputation.
Scope:
- Applies to providers of destruction services for paper, electronic media (e.g., hard drives, SSDs), and other data-bearing materials (e.g., optical disks, tapes).
- Includes on-site (mobile) destruction, off-site destruction, and product disposal.
- Non-Compliance: Remediation plan issued; persistent issues lead to suspension or revocation.
- Client Safeguards: Providers offer compliance records and indemnify clients against legal risks.
- Transparency: Public directory of certified providers (with levels) and accessible criteria.
2. Revised NASDD Evaluator Checklist Below is the updated Evaluator Checklist, reflecting the NASDD name and adding a section to verify tiered certification criteria.
NASDD Certification Evaluator Checklist Purpose
To assess applicants for compliance with NASDD standards and eligibility for Copper, Silver, Gold, or Platinum certification.
Instructions: Mark each criterion as Compliant (C), Partially Compliant (PC), or Non-Compliant (NC), providing evidence. Submit it to the NASDD Oversight Board within 10 business days.
Applicant Information
Applicant Information
Section 1: Secure Operations
| Criteria | Requirements | Status (C/PC/NC) | Notes/Evidence |
|---|---|---|---|
| Material Handling | Documented chain-of-custody with tamper-proof containers. | ||
| Facility Protections | Restricted access, 24/7 CCTV (30-day retention), alarms. | ||
| Transport Safety | Locking cargo areas, GPS tracking, regulatory compliance. | ||
| Access Control | Visitor log, employee ID badges, no unauthorized access. |
Section 2: Personnel Standards
| Criteria | Requirements | Status (C/PC/NC) | Notes/Evidence |
|---|---|---|---|
| Background Checks | 5-year criminal and reference checks, no disqualifying offenses. | ||
| Training Program | Initial and annual training on protocols and laws. | ||
| Substance Testing | Policy with initial/periodic testing, compliant with local laws. | ||
| Confidentiality | Signed agreements, no personal devices in processing areas. |
Section 3: Destruction Protocols
| Criteria | Requirements | Status (C/PC/NC) | Notes/Evidence |
|---|---|---|---|
| Paper Destruction | Particles ≤ 0.5” x 2”, annual equipment calibration. | ||
| Electronic Media | NIST 800-88 compliant, serial number verification. | ||
| Specialized Media | Irreversible destruction (e.g., crushing, shredding). | ||
| Verification Process | Data Destruction Verification Document issued to clients. |
Section 4: Environmental Responsibility
| Criteria | Requirements | Status (C/PC/NC) | Notes/Evidence |
|---|---|---|---|
| Recycling Partnership | Contracts for 90% recycling of materials. | ||
| Disposal Records | 3-year retention of recycling records. | ||
| Environmental Compliance | No violations in the past 12 months. |
Section 5: Legal Compliance and Insurance
| Criteria | Requirements | Status (C/PC/NC) | Notes/Evidence |
|---|---|---|---|
| Regulatory Adherence | Compliance with HIPAA, FACTA, GDPR, state laws. | ||
| Insurance Coverage | $1.5M professional liability insurance. | ||
| Client Protections | Access to compliance records and evaluation reports. |
Section 6: Certification Level Verification
| Criteria | Requirements | Status (C/PC/NC) | Notes/Evidence |
|---|---|---|---|
| Years in Business | Copper: 5+ years Silver: 10+ years Gold: 15+ years Platinum: 20+ years No major legal/regulatory violations. | Verify business registration, licenses, legal records. | |
| 5-Star Google Reviews | Copper: 25+ Silver: 50+ Gold: 100+ Platinum: 150+ Verifiable on Google My Business. | Review Google My Business profile, screenshot review count. | |
| Client Feedback Integrity | No evidence of manipulated or fraudulent reviews. | Cross-check reviews with client interviews or verification tools. |
Section 7: Additional Observations
| Criteria | Requirements | Status (C/PC/NC) | Notes/Evidence |
|---|---|---|---|
| Operational Consistency | Processes align with application documentation. | Verify business registration, licenses, legal records. | |
| Employee Awareness | Staff demonstrate knowledge of NASDD standards. | Review Google My Business profile, screenshot review count. | |
| Client Feedback | Evidence of satisfaction or complaint resolution. | Cross-check reviews with client interviews or verification tools. |
Evaluator Summary
Evaluator Summary
1. NASDD Provider Application Form
is a provider application form template for the NASDD Certification Program. This form streamlines the application process by collecting essential information on operations, compliance, years in business, Google reviews, and other criteria for tiered certifications (Copper, Silver, Gold, Platinum). It can be implemented as a digital form on the NASDD website (e.g., using Google Forms, Type form, or a custom web form) or as a downloadable PDF. The form is designed to be user-friendly, professional, and aligned with NASDD's standards.
NASDD Provider Application Form
Frequently Asked Questions (FAQs)
NASDD combines rigorous security, compliance with laws like HIPAA and GDPR, a 90% recycling target for sustainability, and tiered levels (Copper, Silver, Gold, Platinum) based on experience and client trust. This ensures you choose a provider that matches your needs for reliability and expertise.
For more questions, Contact: www.nasdd.com | info@nasdd.com
Secure Your Data
Ready to protect your sensitive information and ensure compliance? Our team is here to help.