Compliance
We invest in industry-recognized certifications and frameworks so MSPs can confidently demonstrate compliance to their own customers.
Certifications & Frameworks
Industry standards we align with and certify against.
GDPR Compliance
Full alignment with GDPR requirements including data subject rights, breach notification, data processing agreements, and privacy by design principles.
DPA available for all customers
CCPA/CPRA
Compliance with the California Consumer Privacy Act and California Privacy Rights Act, including service provider obligations and consumer rights support.
Privacy notice and rights portal available
CIS Controls
Our security program is aligned with the Center for Internet Security (CIS) Controls framework, providing a prioritized set of security best practices.
Implementation Group 2 (IG2) aligned
NIST Cybersecurity Framework
Our security program follows the NIST CSF core functions: Identify, Protect, Detect, Respond, and Recover, providing a comprehensive security posture.
Aligned with NIST CSF 2.0
CSA STAR Level 1
We are currently completing our Cloud Security Alliance (CSA) Security, Trust, Assurance, and Risk (STAR) Level 1 self-assessment, based on the CSA Consensus Assessments Initiative Questionnaire (CAIQ).
Assessment in progress
Audit & Assessments
Our ongoing commitment to independent verification.
| Assessment | Frequency | Conducted By | Status |
|---|---|---|---|
| CSA STAR Level 1 | Initial assessment | Self-assessment (CAIQ) | In Progress |
| Vulnerability Assessment | Continuous | Automated + Manual Review | Active |
| Internal Security Review | Quarterly | Internal Security Team | Active |
Supporting MSP Compliance
How we help MSPs meet their own compliance obligations.
Compliance Documentation
We provide comprehensive documentation to support your compliance programs:
- Data Processing Agreement (DPA)
- Security Questionnaire Responses (SIG/CAIQ)
Vendor Assessment Support
We understand MSPs often need to assess their vendors on behalf of their clients. We support:
- Pre-filled security questionnaires (SIG Lite, CAIQ)
- Custom security questionnaire completion within 5 business days
- Architecture diagrams and data flow documentation
- Direct access to our security team for assessment calls