We are proud to announ­ce that we have suc­cessful­ly achie­ved ISO/IEC 27001:2022 cer­ti­fi­ca­ti­on, one of the worl­d’s lea­ding stan­dards for infor­ma­ti­on secu­ri­ty manage­ment sys­tems (ISMS). At a time when cyber­crime, cloud solu­ti­ons and the pro­tec­tion of sen­si­ti­ve data are among the big­gest chal­lenges for com­pa­nies, ORISA has respon­ded proac­tively and is sen­ding a strong signal of secu­ri­ty and trust with this cer­ti­fi­ca­ti­on.

What does ISO/IEC 27001:2022 mean?

ISO/IEC 27001:2022 is the latest ver­si­on of this renow­ned stan­dard and descri­bes the requi­re­ments for estab­li­shing, imple­men­ting and main­tai­ning a com­pre­hen­si­ve infor­ma­ti­on secu­ri­ty manage­ment sys­tem. The aim of the stan­dard is to sys­te­ma­ti­cal­ly iden­ti­fy and assess infor­ma­ti­on secu­ri­ty risks and adress them using sui­ta­ble mea­su­res. TÜV Thü­rin­gen’s cer­ti­fi­ca­ti­on demons­tra­tes that ORISA has con­sis­t­ent­ly inte­gra­ted infor­ma­ti­on secu­ri­ty into all are­as of the com­pa­ny — from IT infra­struc­tu­re and data pro­tec­tion to secu­ri­ty mecha­nisms for phy­si­cal and digi­tal access.

With incre­asing digi­ta­liza­ti­on and the shift of many busi­ness pro­ces­ses to the cloud, the risks are also incre­asing. Cyber­crime, data brea­ches and the misu­se of sen­si­ti­ve infor­ma­ti­on pose immense chal­lenges for com­pa­nies. The ISO/IEC 27001 cer­ti­fi­ca­ti­on shows that ORISA is pre­pared for the­se new requi­re­ments. Not only do we demons­tra­te sophisti­ca­ted risk manage­ment, strin­gent data pro­tec­tion requi­re­ments and secu­ri­ty con­trols to ensu­re the con­fi­den­tia­li­ty and inte­gri­ty of infor­ma­ti­on, but we also empha­si­ze the con­ti­nuous impro­ve­ment and adapt­a­ti­on of stra­te­gies to avert thre­ats. The imple­men­ta­ti­on of a com­pre­hen­si­ve ISMS as defi­ned in our qua­li­ty poli­cy ensu­res that not only our own data, but abo­ve all our cus­to­mers’ con­fi­den­ti­al infor­ma­ti­on is opti­mal­ly pro­tec­ted. The ISO/IEC 27001 cer­ti­fi­ca­ti­on streng­thens the con­fi­dence of our part­ners and cus­to­mers that ORISA appli­es sta­te-of-the-art secu­ri­ty stan­dards and takes infor­ma­ti­on secu­ri­ty serious­ly to ensu­re the foun­da­ti­on for suc­cessful coope­ra­ti­on.

In addi­ti­on to ISO/IEC 27001 cer­ti­fi­ca­ti­on, ORISA has held the TISAX label sin­ce 2017 and suc­cessful­ly pas­sed the requi­re­ments as part of the 2024 re-audit. The TISAX label is of gre­at importance to us, espe­ci­al­ly due to our coope­ra­ti­on with cus­to­mers from the auto­mo­ti­ve indus­try such as Por­sche, whe­re pro­vi­ding pro­of of a high stan­dard of infor­ma­ti­on secu­ri­ty is essen­ti­al. By mee­ting the TISAX requi­re­ments, we can streng­then the trust of our cus­to­mers and ensu­re that their sen­si­ti­ve data is opti­mal­ly pro­tec­ted.

In con­clu­si­on: A safe future with ORISA

ISO/IEC 27001:2022 cer­ti­fi­ca­ti­on is an important mile­stone in ORI­SA’s stra­te­gic direc­tion. Our cus­to­mers can rest assu­red that their data and infor­ma­ti­on are in safe hands with us. In com­bi­na­ti­on with our long-stan­ding ISO 9001 cer­ti­fi­ca­ti­on, this new TÜV reco­gni­ti­on demons­tra­tes our com­mit­ment not only to pro­vi­ding high-qua­li­ty pro­ducts and ser­vices, but also to ensu­ring the hig­hest secu­ri­ty stan­dards.

tüv seal