SUSE ISO-IEC 27001/27701 Certification
The ISO/IEC 27001 standard is an information security management systems (ISMS) certification standard recognized worldwide, outlining the requirements an organization's ISMS must satisfy. The standard delivers guidance on the establishment, implementation, maintenance, and continual improvement of the ISMS, regardless of the company's size or business sector. When an organization is certified compliant with ISO/IEC 27001, it signifies they have established a systematic framework to proactively manage risks related to the security of data owned or handled by the company, exemplifying the industry best practices and security principles contained within the international standard.
The ISO/IEC 27701 standard, which serves as a privacy extension to ISO/IEC 27001, defines a structured framework for establishing and maintaining a Privacy Information Management System (PIMS). This standard outlines specific requirements and guidance for managing data privacy and protecting the rights of individuals, both as Personally Identifiable Information (PII) Controllers and PII Processors.
SUSE has successfully obtained renewed certifications for ISO/IEC 27001:2022 and ISO/IEC 27701:2019 from LRQA (with our leading certified legal entity registered as SUSE Group UK Limited). These certifications serve as a testament to SUSE's ongoing dedication to security and operational excellence, providing our customers with absolute assurance that our governance practices meet the highest international compliance standards.
| Organization | Certification | Date |
|---|---|---|
SUSE |
Original approved: 06/03/2025 |
If you have any trouble downloading the certificate, please contact: cybersecurity@suse.com