Compliance

We invest in industry-recognized certifications and frameworks so MSPs can confidently demonstrate compliance to their own customers.

Certifications & Frameworks

Industry standards we align with and certify against.

GDPR
Compliant

GDPR Compliance

Full alignment with GDPR requirements including data subject rights, breach notification, data processing agreements, and privacy by design principles.

DPA available for all customers

CCPA
Compliant

CCPA/CPRA

Compliance with the California Consumer Privacy Act and California Privacy Rights Act, including service provider obligations and consumer rights support.

Privacy notice and rights portal available

CIS
Aligned

CIS Controls

Our security program is aligned with the Center for Internet Security (CIS) Controls framework, providing a prioritized set of security best practices.

Implementation Group 2 (IG2) aligned

NIST
Aligned

NIST Cybersecurity Framework

Our security program follows the NIST CSF core functions: Identify, Protect, Detect, Respond, and Recover, providing a comprehensive security posture.

Aligned with NIST CSF 2.0

CSA
In Progress

CSA STAR Level 1

We are currently completing our Cloud Security Alliance (CSA) Security, Trust, Assurance, and Risk (STAR) Level 1 self-assessment, based on the CSA Consensus Assessments Initiative Questionnaire (CAIQ).

Assessment in progress

Audit & Assessments

Our ongoing commitment to independent verification.

Assessment Frequency Conducted By Status
CSA STAR Level 1 Initial assessment Self-assessment (CAIQ) In Progress
Vulnerability Assessment Continuous Automated + Manual Review Active
Internal Security Review Quarterly Internal Security Team Active

Supporting MSP Compliance

How we help MSPs meet their own compliance obligations.

Compliance Documentation

We provide comprehensive documentation to support your compliance programs:

  • Data Processing Agreement (DPA)
  • Security Questionnaire Responses (SIG/CAIQ)

Vendor Assessment Support

We understand MSPs often need to assess their vendors on behalf of their clients. We support:

  • Pre-filled security questionnaires (SIG Lite, CAIQ)
  • Custom security questionnaire completion within 5 business days
  • Architecture diagrams and data flow documentation
  • Direct access to our security team for assessment calls