Svensk e-identitet kan nu stolt meddela att den externt utförda revisionen av SITHS-hanteringen blivit godkänd av Inera. Revisionen genomfördes huvudsakligen på huvudkontoret i Uppsala, dessutom gjordes besök och stickprov hos några av de tredjepartsansluta organisationer som hjälper till att lämna ut SITHS-kort.
”Det har varit ett nöje att genomföra revisionen tillsammans med Inera och resultatet visar de förbättringar och framsteg vår organisation gjort sedan 2019. Vi fortsätter självklart med vårt kontinuerliga förbättringsarbete” Tomas Algotsson – Produktägare interna tjänster, tidigare Ansvarig utgivare.
Revisionen har lyckats lokalisera och klargöra organisationens styrkor vid hantering av SITHS, samt gett insikt och underlättat processen av att rätta till de få svagheter som upptäcktes. Detta underlag betraktas som ett väldigt viktigt verktyg som bidrar till förmågan att effektivisera det kontinuerliga förbättringsarbetet.
Sedan föregående revision 2019 har Svensk e-identitet genomfört ett mycket stort utvecklingsarbete. Inera påvisar att de stora förbättringarna främst skett på operativ nivå, styrkan i ett förvärvande av bred och hög kompetens kring SITHS, vikten av ett systematiskt informationssäkerhetsarbete, en medveten och lösningsorienterad ledning samt väletablerade kontaktkanaler för stöd till nöjda kunder.
Det har även implementerats en tydlig och strukturerad plan i den mån att stärka informationssäkerhetsarbetet ytterligare. I samband med detta har Martin Karlsson blivit tillsatt som chief information security officer (CISO) vars huvudsakliga mål är att att höja lägsta nivån inom informationssäkerhet, samt att leda ISO 27001 – certifieringen för att fortsätta tillväxten utan släppa fokus på informationssäkerheten.
Fakta om Ineras revision
Revisionen syftar till att följa upp rutiner och arbetsprocesser kring användandet av SITHS. Enligt Inera är revisionen central i att bibehålla trovärdigheten hos tjänsten, samt öka tryggheten för dem som är anslutna.
Inera sammanfattar åtgärdspunkterna från sina revisioner i en större rapport som senare kommer att publiceras på Ineras webbplats.
Sök på sidan
Sök efter tjänster eller nyckelord
Kaka | Typ | Varaktighet | Beskrivning |
---|---|---|---|
__cf_bm | 1 hour | This cookie, set by Cloudflare, is used to support Cloudflare Bot Management. | |
__hssc | 1 hour | HubSpot sets this cookie to keep track of sessions and to determine if HubSpot should increment the session number and timestamps in the __hstc cookie. | |
__hssrc | session | This cookie is set by Hubspot whenever it changes the session cookie. The __hssrc cookie set to 1 indicates that the user has restarted the browser, and if the cookie does not exist, it is assumed to be a new session. | |
_cfuvid | session | Calendly sets this cookie to track users across sessions to optimize user experience by maintaining session consistency and providing personalized services | |
ApplicationGatewayAffinity | session | This cookie is set by the Laravel Framework. This cookie is used for managing browsing sessions. It enables keeping the web browser traffic assigned to single server. | |
cookielawinfo-checkbox-advertisement | 1 year | Set by the GDPR Cookie Consent plugin, this cookie is used to record the user consent for the cookies in the "Advertisement" category . | |
cookielawinfo-checkbox-analytical | 1 year | Set by the GDPR Cookie Consent plugin to store the user consent for cookies in the category "Analytics". | |
cookielawinfo-checkbox-necessary | 0 | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
cookielawinfo-checkbox-non-necessary | 0 | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Non Necessary". |
cookielawinfo-checkbox-performance | 1 year | Set by the GDPR Cookie Consent plugin, this cookie is used to store the user consent for cookies in the category "Performance". | |
CookieLawInfoConsent | 1 year | Records the default button state of the corresponding category & the status of CCPA. It works only in coordination with the primary cookie. | |
intercom-device-id-* | 8 months 26 days 1 hour | Intercom sets this cookie that allows visitors to see any conversations they've had on Intercom websites. | |
intercom-id-* | 8 months 26 days 1 hour | Intercom sets this cookie that allows visitors to see any conversations they've had on Intercom websites. | |
intercom-session-* | 7 days | Intercom sets this cookie that allows visitors to see any conversations they've had on Intercom websites. | |
rc::a | never | This cookie is set by the Google recaptcha service to identify bots to protect the website against malicious spam attacks. | |
rc::c | session | This cookie is set by the Google recaptcha service to identify bots to protect the website against malicious spam attacks. | |
viewed_cookie_policy | 0 | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |
XSRF-TOKEN | 0 | 1 day | This cookie is used for security purposes of the website. |
Kaka | Typ | Varaktighet | Beskrivning |
---|---|---|---|
intercom-device-id-tbnb2681 | 8 months 26 days 1 hour | No description | |
test_cookie | 0 | 11 months | doubleclick.net sets this cookie to determine if the user's browser supports cookies. |
wj4s | 1 | 1 day |
Kaka | Typ | Varaktighet | Beskrivning |
---|---|---|---|
_ga | 0 | 14 months | This cookie is installed by Google Analytics. The cookie is used to calculate visitor, session, camapign data and keep track of site usage for the site's analytics report. The cookies store information anonymously and assigns a randoly generated number to identify unique visitors. |
_ga_7C9PW9YLV6 | 14 months | This cookie is installed by Google Analytics. | |
_gat_UA-7338076-9 | 0 | 1 minute | This is a pattern type cookie set by Google Analytics, where the pattern element on the name contains the unique identity number of the account or website it relates to. It appears to be a variation of the _gat cookie which is used to limit the amount of data recorded by Google on high traffic volume websites. |
_gid | 0 | 1 day | This cookie is installed by Google Analytics. The cookie is used to store information of how visitors use a website and helps in creating an analytics report of how the wbsite is doing. The data collected including the number visitors, the source where they have come from, and the pages viisted in an anonymous form. |
CONSENT | 2 years | YouTube sets this cookie via embedded youtube-videos and registers anonymous statistical data. | |
GPS | 0 | 30 minutes | This cookie is set by Youtube and registers a unique ID for tracking users based on their geographical location |
YSC | 1 | This cookies is set by Youtube and is used to track the views of embedded videos. |
Kaka | Typ | Varaktighet | Beskrivning |
---|---|---|---|
SRM_B | 1 year 24 days | Used by Microsoft Advertising as a unique ID for visitors. |
Kaka | Typ | Varaktighet | Beskrivning |
---|---|---|---|
ANONCHK | 10 minutes | The ANONCHK cookie, set by Bing, is used to store a user's session ID and verify ads' clicks on the Bing search engine. The cookie helps in reporting and personalization as well. | |
bcookie | 1 year | LinkedIn sets this cookie from LinkedIn share buttons and ad tags to recognize browser IDs. | |
IDE | 1 | 2 years | Used by Google DoubleClick and stores information about how the user uses the website and any other advertisement before visiting the website. This is used to present users with ads that are relevant to them according to the user profile. |
MUID | 1 year 24 days | Bing sets this cookie to recognise unique web browsers visiting Microsoft sites. This cookie is used for advertising, site analytics, and other operations. | |
VISITOR_INFO1_LIVE | 1 | 5 months | This cookie is set by Youtube. Used to track the information of the embedded YouTube videos on a website. |
VISITOR_PRIVACY_METADATA | 6 months | YouTube sets this cookie to store the user's cookie consent state for the current domain. | |
yt-remote-connected-devices | never | YouTube sets this cookie to store the video preferences of the user using embedded YouTube video. | |
yt-remote-device-id | never | YouTube sets this cookie to store the video preferences of the user using embedded YouTube video. |
Kaka | Varaktighet | Beskrivning |
---|---|---|
ApplicationGatewayAffinityCORS | session | No description available. |
Kaka | Varaktighet | Beskrivning |
---|---|---|
__hstc | 6 months | Hubspot set this main cookie for tracking visitors. It contains the domain, initial timestamp (first visit), last timestamp (last visit), current timestamp (this visit), and session number (increments for each subsequent session). |
_clck | 1 year | Microsoft Clarity sets this cookie to retain the browser's Clarity User ID and settings exclusive to that website. This guarantees that actions taken during subsequent visits to the same website will be linked to the same user ID. |
_clsk | 1 day | Microsoft Clarity sets this cookie to store and consolidate a user's pageviews into a single session recording. |
_fbp | 3 months | Facebook sets this cookie to display advertisements when either on Facebook or on a digital platform powered by Facebook advertising after visiting the website. |
_gcl_au | 3 months | Google Tag Manager sets the cookie to experiment advertisement efficiency of websites using their services. |
CLID | 1 year | Microsoft Clarity set this cookie to store information about how visitors interact with the website. The cookie helps to provide an analysis report. The data collection includes the number of visitors, where they visit the website, and the pages visited. |
hubspotutk | 6 months | HubSpot sets this cookie to keep track of the visitors to the website. This cookie is passed to HubSpot on form submission and used when deduplicating contacts. |
MR | 7 days | This cookie, set by Bing, is used to collect user information for analytics purposes. |
SM | session | Microsoft Clarity cookie set this cookie for synchronizing the MUID across Microsoft domains. |
Kaka | Varaktighet | Beskrivning |
---|---|---|
li_gc | 6 months | Linkedin set this cookie for storing visitor's consent regarding using cookies for non-essential purposes. |
lidc | 1 day | LinkedIn sets the lidc cookie to facilitate data center selection. |
yt-remote-cast-installed | session | The yt-remote-cast-installed cookie is used to store the user's video player preferences using embedded YouTube video. |
yt-remote-fast-check-period | session | The yt-remote-fast-check-period cookie is used by YouTube to store the user's video player preferences for embedded YouTube videos. |
yt-remote-session-app | session | The yt-remote-session-app cookie is used by YouTube to store user preferences and information about the interface of the embedded YouTube video player. |
yt-remote-session-name | session | The yt-remote-session-name cookie is used by YouTube to store the user's video player preferences using embedded YouTube video. |
ytidb::LAST_RESULT_ENTRY_KEY | never | The cookie ytidb::LAST_RESULT_ENTRY_KEY is used by YouTube to store the last search result entry that was clicked by the user. This information is used to improve the user experience by providing more relevant search results in the future. |
Kaka | Typ | Varaktighet | Beskrivning |
---|---|---|---|
__cf_bm | 1 hour | This cookie, set by Cloudflare, is used to support Cloudflare Bot Management. | |
__hssc | 1 hour | HubSpot sets this cookie to keep track of sessions and to determine if HubSpot should increment the session number and timestamps in the __hstc cookie. | |
__hssrc | session | This cookie is set by Hubspot whenever it changes the session cookie. The __hssrc cookie set to 1 indicates that the user has restarted the browser, and if the cookie does not exist, it is assumed to be a new session. | |
_cfuvid | session | Calendly sets this cookie to track users across sessions to optimize user experience by maintaining session consistency and providing personalized services | |
ApplicationGatewayAffinity | session | This cookie is set by the Laravel Framework. This cookie is used for managing browsing sessions. It enables keeping the web browser traffic assigned to single server. | |
cookielawinfo-checkbox-advertisement | 1 year | Set by the GDPR Cookie Consent plugin, this cookie is used to record the user consent for the cookies in the "Advertisement" category . | |
cookielawinfo-checkbox-analytical | 1 year | Set by the GDPR Cookie Consent plugin to store the user consent for cookies in the category "Analytics". | |
cookielawinfo-checkbox-necessary | 0 | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
cookielawinfo-checkbox-non-necessary | 0 | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Non Necessary". |
cookielawinfo-checkbox-performance | 1 year | Set by the GDPR Cookie Consent plugin, this cookie is used to store the user consent for cookies in the category "Performance". | |
CookieLawInfoConsent | 1 year | Records the default button state of the corresponding category & the status of CCPA. It works only in coordination with the primary cookie. | |
intercom-device-id-* | 8 months 26 days 1 hour | Intercom sets this cookie that allows visitors to see any conversations they've had on Intercom websites. | |
intercom-id-* | 8 months 26 days 1 hour | Intercom sets this cookie that allows visitors to see any conversations they've had on Intercom websites. | |
intercom-session-* | 7 days | Intercom sets this cookie that allows visitors to see any conversations they've had on Intercom websites. | |
rc::a | never | This cookie is set by the Google recaptcha service to identify bots to protect the website against malicious spam attacks. | |
rc::c | session | This cookie is set by the Google recaptcha service to identify bots to protect the website against malicious spam attacks. | |
viewed_cookie_policy | 0 | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |
XSRF-TOKEN | 0 | 1 day | This cookie is used for security purposes of the website. |
Kaka | Typ | Varaktighet | Beskrivning |
---|---|---|---|
intercom-device-id-tbnb2681 | 8 months 26 days 1 hour | No description | |
test_cookie | 0 | 11 months | doubleclick.net sets this cookie to determine if the user's browser supports cookies. |
wj4s | 1 | 1 day |
Kaka | Typ | Varaktighet | Beskrivning |
---|---|---|---|
_ga | 0 | 14 months | This cookie is installed by Google Analytics. The cookie is used to calculate visitor, session, camapign data and keep track of site usage for the site's analytics report. The cookies store information anonymously and assigns a randoly generated number to identify unique visitors. |
_ga_7C9PW9YLV6 | 14 months | This cookie is installed by Google Analytics. | |
_gat_UA-7338076-9 | 0 | 1 minute | This is a pattern type cookie set by Google Analytics, where the pattern element on the name contains the unique identity number of the account or website it relates to. It appears to be a variation of the _gat cookie which is used to limit the amount of data recorded by Google on high traffic volume websites. |
_gid | 0 | 1 day | This cookie is installed by Google Analytics. The cookie is used to store information of how visitors use a website and helps in creating an analytics report of how the wbsite is doing. The data collected including the number visitors, the source where they have come from, and the pages viisted in an anonymous form. |
CONSENT | 2 years | YouTube sets this cookie via embedded youtube-videos and registers anonymous statistical data. | |
GPS | 0 | 30 minutes | This cookie is set by Youtube and registers a unique ID for tracking users based on their geographical location |
YSC | 1 | This cookies is set by Youtube and is used to track the views of embedded videos. |
Kaka | Typ | Varaktighet | Beskrivning |
---|---|---|---|
SRM_B | 1 year 24 days | Used by Microsoft Advertising as a unique ID for visitors. |
Kaka | Typ | Varaktighet | Beskrivning |
---|---|---|---|
ANONCHK | 10 minutes | The ANONCHK cookie, set by Bing, is used to store a user's session ID and verify ads' clicks on the Bing search engine. The cookie helps in reporting and personalization as well. | |
bcookie | 1 year | LinkedIn sets this cookie from LinkedIn share buttons and ad tags to recognize browser IDs. | |
IDE | 1 | 2 years | Used by Google DoubleClick and stores information about how the user uses the website and any other advertisement before visiting the website. This is used to present users with ads that are relevant to them according to the user profile. |
MUID | 1 year 24 days | Bing sets this cookie to recognise unique web browsers visiting Microsoft sites. This cookie is used for advertising, site analytics, and other operations. | |
VISITOR_INFO1_LIVE | 1 | 5 months | This cookie is set by Youtube. Used to track the information of the embedded YouTube videos on a website. |
VISITOR_PRIVACY_METADATA | 6 months | YouTube sets this cookie to store the user's cookie consent state for the current domain. | |
yt-remote-connected-devices | never | YouTube sets this cookie to store the video preferences of the user using embedded YouTube video. | |
yt-remote-device-id | never | YouTube sets this cookie to store the video preferences of the user using embedded YouTube video. |
Kaka | Varaktighet | Beskrivning |
---|---|---|
ApplicationGatewayAffinityCORS | session | No description available. |
Kaka | Varaktighet | Beskrivning |
---|---|---|
__hstc | 6 months | Hubspot set this main cookie for tracking visitors. It contains the domain, initial timestamp (first visit), last timestamp (last visit), current timestamp (this visit), and session number (increments for each subsequent session). |
_clck | 1 year | Microsoft Clarity sets this cookie to retain the browser's Clarity User ID and settings exclusive to that website. This guarantees that actions taken during subsequent visits to the same website will be linked to the same user ID. |
_clsk | 1 day | Microsoft Clarity sets this cookie to store and consolidate a user's pageviews into a single session recording. |
_fbp | 3 months | Facebook sets this cookie to display advertisements when either on Facebook or on a digital platform powered by Facebook advertising after visiting the website. |
_gcl_au | 3 months | Google Tag Manager sets the cookie to experiment advertisement efficiency of websites using their services. |
CLID | 1 year | Microsoft Clarity set this cookie to store information about how visitors interact with the website. The cookie helps to provide an analysis report. The data collection includes the number of visitors, where they visit the website, and the pages visited. |
hubspotutk | 6 months | HubSpot sets this cookie to keep track of the visitors to the website. This cookie is passed to HubSpot on form submission and used when deduplicating contacts. |
MR | 7 days | This cookie, set by Bing, is used to collect user information for analytics purposes. |
SM | session | Microsoft Clarity cookie set this cookie for synchronizing the MUID across Microsoft domains. |
Kaka | Varaktighet | Beskrivning |
---|---|---|
li_gc | 6 months | Linkedin set this cookie for storing visitor's consent regarding using cookies for non-essential purposes. |
lidc | 1 day | LinkedIn sets the lidc cookie to facilitate data center selection. |
yt-remote-cast-installed | session | The yt-remote-cast-installed cookie is used to store the user's video player preferences using embedded YouTube video. |
yt-remote-fast-check-period | session | The yt-remote-fast-check-period cookie is used by YouTube to store the user's video player preferences for embedded YouTube videos. |
yt-remote-session-app | session | The yt-remote-session-app cookie is used by YouTube to store user preferences and information about the interface of the embedded YouTube video player. |
yt-remote-session-name | session | The yt-remote-session-name cookie is used by YouTube to store the user's video player preferences using embedded YouTube video. |
ytidb::LAST_RESULT_ENTRY_KEY | never | The cookie ytidb::LAST_RESULT_ENTRY_KEY is used by YouTube to store the last search result entry that was clicked by the user. This information is used to improve the user experience by providing more relevant search results in the future. |