Compliance

At Acclaro, we are proud to have successfully attained multiple ISO certifications, demonstrating our unwavering commitment to quality, security, and excellence. These certifications reflect our dedication to maintaining the highest standards in our operations and delivering exceptional value to our clients.

ISO/IEC 27001:2022 – Information Security Management

ISO/IEC 27001:2022 is the world’s best-known standard for information security management systems (ISMS). It defines requirements an ISMS must meet. The ISO/IEC 27001:2022 standard provides companies of any size and from all sectors with guidance for establishing, implementing, maintaining, and continually improving an information security management system.

Our conformity with ISO/IEC 27001:2022 means that Acclaro has put in place a system to manage risks related to the security of data owned or handled by the company, and that this system respects all the best practices and principles enshrined in this International Standard.

With cyber-crime on the rise and new threats constantly emerging, it can seem difficult or even impossible to manage cyber-risks. ISO/IEC 27001:2022 helps Acclaro become risk-aware and proactively identify and address weaknesses.

It also promotes a holistic approach to information security: vetting people, policies and technology. An information security management system implemented according to this standard demonstrates our approach to risk management, cyber-resilience, and operational excellence.

ISO/IEC 27701:2019 – Privacy Information Management

ISO/IEC 27701:2019 is an international standard that extends ISO/IEC 27001 and ISO/IEC 27002 to include requirements and guidance for establishing, implementing, maintaining, and continually improving a Privacy Information Management System (PIMS).

This standard helps organizations demonstrate robust and accountable management of personally identifiable information (PII). It provides a governance framework for privacy that aligns with global data protection laws such as the GDPR, ensuring that data controllers and processors implement the necessary controls to safeguard personal data.

By achieving conformity with ISO/IEC 27701:2019, Acclaro has demonstrated that we have:

  • Established a structured system to manage privacy risks associated with the PII we process.
  • Implemented clear policies, procedures, and technical controls to ensure the confidentiality, integrity, and proper handling of personal data throughout its lifecycle.
  • Embedded privacy-by-design principles into our operations, technology, and decision‑making processes.
  • Adopted internationally recognized best practices for managing privacy obligations and maintaining trust with clients, partners, and data subjects.
  • Our compliance with ISO/IEC 27701:2019 reinforces Acclaro’s commitment to maintaining the highest standards of privacy protection, complementing our ISO/IEC 27001:2022 certification and strengthening the foundation of our security and privacy programs.