Company policies
Certifications
Version 1.0 · Last updated 2024-11-05
As certified AWS Partner, we are committed to adhere to rigorous infrastructure compliance.
As certified AWS Partner, we passed the AWS Foundational Technical Review (FTR, including its Sustainability Pillar) with infrastructure that is certified for compliance with
- ISO/IEC 27001:2013,
- 27017:2015,
- 27018:2014, and
- ISO/IEC 9001:2015.
These certifications are performed by independent third-party auditors. Additionally, we have access to independent third-party examination reports that demonstrate how our infrastructure on AWS achieves key compliance controls and objectives. These are reports for:
- SOC 1 (formerly SSAE 16/ISAE 3402),
- SOC 2 Security, Availability & Confidentiality,
- SOC 2 Privacy Type I, and
- SOC 3 Security, Availability & Confidentiality.
Our organization itself is not automatically certified by association, but the ISO/IEC 27001:2013 certification for AWS covers the AWS security management process over the scope of our services and data centers.
Note: for security reasons, we cannot send copies of the SOC reports to third parties. However, there is an information security policy description available to all users, as well as a more formal Security Addendum.
On top of the above, we are closely monitoring ISO/IEC TR 24028, which offers guidelines for AI trustworthiness as part of the broader AI-focused standards by ISO/IEC JTC 1/SC 42. Although it’s a technical report and not an official standard for certification, it provides valuable implementation guidance.