We have achieved ISO 27001 certification, the internationally recognized standard for information security management.
ISO 27001 confirms that information security across the organization supporting Data Privacy Manager is governed through a structured, risk-based management system.
This includes defined policies, processes, controls, and responsibilities that are continuously reviewed and improved, and independently audited by an accredited third party.
Achieving this certification reflects a deliberate and sustained effort to manage information security responsibly, transparently, and in line with globally accepted best practices.
What this means for our customers
For organizations using Data Privacy Manager, ISO 27001 certification provides assurance that:
- Information security is managed through documented, consistently applied policies and procedures
- Security risks related to the service are systematically identified, assessed, and addressed
- Roles and responsibilities for information security are clearly defined and enforced
- Information security practices are subject to regular internal review and independent external audit
This certification supports customers in meeting their own governance, compliance, and vendor-risk requirements when working with Data Privacy Manager.
Leadership insight
“ISO 27001 certification confirms that our systems and processes meet strict international security expectations. It reflects our responsibility to manage information security in a disciplined and transparent way as we support our customers.” — Marijan Bračić, CEO, Legit
Scope and verification
ISO 27001 certification applies to the organizational processes, systems, and operations that support Data Privacy Manager. The certificate can be independently verified through SGS.