Dropsolid achieved the ISO 27001 certification this summer. This certification confirms our commitment to security and quality management, which are increasingly important in a world where data drives (digital) success. We specifically chose DQS, a leading certification institute, for our evaluation due to its qualitative certification and outstanding reputation.
What is an ISO certification?
ISO (International Organization for Standardization) is an independent, international organization that sets global standards. These standards ensure quality, security, and efficiency in various industries. ISO 27001, the standard we obtained, provides a structured framework for managing information security - also known as an information security management system (ISMS).
The meaning of this certification for Dropsolid
Achieving ISO 27001 certification does not happen overnight. It requires extensive preparation, a thorough review of our processes and systems, and a strong commitment from our entire team. For Dropsolid, this certification means we are recognized for our strict security practices and ability to manage and minimize risk.
This certification is very important for a company like Dropsolid because we are not limited to just the minimum requirements. We specifically strive to be very broadly certified and did not focus on one product, such as hosting, for example, but took all components in scope. This means we examine all aspects of our business and ensure they meet and exceed the standards. It takes more effort and is more challenging, but the result is a more robust and secure system for us and our customers.
New NIS2 legislation
In addition to our ISO certification, we are also proactively addressing the upcoming NIS2 legislation that goes into effect in October. NIS2, or the updated EU directive for network and information systems, requires a detailed review of cyber security for entire organizations, not just their IT departments.
The Royal Decree - published June 24 with further details surrounding the new NIS2 legislation - stipulates that organizations using the Cyber Fundamental Framework (CyFun) or ISO 27001 framework are considered compliant. Using either framework, the organization is also presumed to comply with the NIS2 requirements.
By choosing to integrate the ISO 27001 framework into our processes, Dropsolid has a distinct advantage over the NIS2 legislation. By being ahead of the curve with our certifications, we not only guarantee that we are ready for the new regulations but also provide you, our customer, with the assurance that you are working with a partner who is a leader in managing cybersecurity in a holistic, thoughtful manner.
What does certification mean for our clients?
For our customers, ISO certification brings several direct benefits:
As your partner, Dropsolid not only chooses to provide services, we strive to be a secure party for all your digital needs. Our ISO certification is a great testament to our commitment and expertise; that way, we not only value your trust, we protect it.