Xano TRUST CENTER
Xano
Loading…

Certifications

Certification

ISO 27001

Overview

ISO/IEC 27001 is the leading international standard for Information Security Management Systems (ISMS), designed to help organizations identify, manage, and continuously reduce security risk while protecting the confidentiality, integrity, and availability of information. For Xano as a SaaS platform and data processor, it means we operate a formal security program with risk management, governance, policies, monitoring, incident response, and continual improvement around the systems and data entrusted to us. For our customers as data controllers, it provides assurance that the infrastructure and services supporting their data are managed under an independently assessed security framework, helping them meet their own vendor risk, security, and governance expectations.

Scope of Xano’s Certification

Virtual Site: Planning, deployment, provisioning, and delivery of secure software applications.

How Xano Meets Compliance Criteria

Xano maintains a range of policies, procedures, and operational controls to support its compliance obligations and overall security posture. The examples below highlight key elements of our program in relation to this framework, and do not represent a complete list:

  • Access Control Policy
  • Change Management System Policy
  • Continuous Improvement Policy
  • Employee Onboarding & Offboarding Policy
  • Information Security Program
  • Risk Assessment Policy & Risk Management Procedure
  • Threat & Vulnerability Management Policy
  • Asset Inventory & Access Control Log
  • Internal Audit Program
  • InfoSec Management Review Meetings

Files

100%