The ISO/IEC 27000 family of standards provides a framework for information security policies and procedures, including legal, physical, and technical controls involved in an organization's risk management processes.
ISO/IEC 27001 is an information security standard that specifies requirements for establishing, implementing, maintaining and continually improving an information security management system (ISMS). It includes requirements for documentation, management responsibilities, internal audits, corrective actions, and more. Certification helps organizations comply with regulatory and legal requirements related to information security.
SITE Cloud undergoes regular independent third-party audits to maintain compliance with ISO/IEC 27001.
SITE Cloud has achieved ISO/IEC 27001 certification for its information security management system (ISMS).
The SITE Cloud ISO/IEC 27001 certificate and audit reports demonstrate compliance and provide details on the audit scope.
Clients can use SITE Cloud's ISO/IEC 27001 certification to support compliance for their own systems and services built on SITE Cloud.
The SITE Cloud ISO/IEC 27001 certification applies to the following in-scope cloud services:
Compliance demonstrates that SITE Cloud follows best practices for information security, validated by an accredited third-party auditor. This provides assurance to clients that data is appropriately protected.
Yes, SITE Cloud's ISO/IEC 27001 certification can be used to support compliance for customer systems and services built on the SITE Cloud platform. However, customers are responsible for compliance of their own implementation and internal controls.
In addition to making audit certificates available, SITE Cloud provides compliance documentation within SITE Cloud Docs portal to help clients to meet compliance requirements.