Security

We’re committed to the safety and security of our customers’ data. As both our company and international standards evolve, we will continue to prioritise a safe and secure ecosystem of information that reflects our investment in our platform, processes, and people. 

This involves routine audits, covering everything from data encryption to vulnerability management. 

Most recently, we became ISO 27001:2022 certified. 

You can read more about keeping your own information secure here.

Certifications

ISO 27001:2022

The ISO/IEC 27001 certification is the international standard for information security and it specifies and sets out the requirements for an effective information security management system (ISMS). Promoting best practices, ISO 27001 helps organisations manage and deal with their information security through people, processes, and technology. It does this by setting out a framework to establish, implement, operate, monitor, review, maintain, and continually improve an ISMS.

The certification is awarded following an external audit, indicating that the organisation's ISMS undergoes regular testing and is aligned with information security best practices.

PCI-DSS v3.2.1

The PCI DSS (Payment Card Industry Data Security Standard) is an information security standard designed to reduce payment card fraud by increasing security controls around cardholder data.

A result of a collaboration between the major payment brands and administered by the PCI SSC (Payment Card Industry Security Standards Council), the Standard provides specific, actionable guidance on protecting payment card data. This guidance can be applied to organisations of any size or type that use any method of processing or storing data.

Payment security is essential for every organisation that stores, processes or transmits cardholder data. By achieving PCI certification, we maintain rigorous data security standards to ensure our customers’ card information remains safe and secure.