Certifications
Our skilled IT pilots ensure that we can deliver the best digital solutions to our customers. That is why we are proud of our ISAE declarations, which document that we meet international standards for both operations, security and data protection.
They are your guarantee that we are a competent and trustworthy partner and IT supplier.
ISAE 3402 declaration
At itpilot we attach great importance to
it security which is why we have also set a goal that we will guarantee our customers a high level of security on all web and IT solutions we develop for them.
We are dedicated to providing our customers with peace of mind, and are proud of our ISAE 3402 Type 2 declaration, which is renewed annually through external audits. It documents that our procedures and controls meet the requirements of the international standard for IT supplier operating processes.
ISAE 3000 declaration
With an ISAE 3000 declaration, we document that we as a company meet the requirements for GDPR, data processing and information security – and that we work responsibly with the personal data we process on behalf of our customers.
The declaration has been prepared by an independent auditor and we have obtained a Type 2 declaration, which covers a 12-month period. This means that both our processes and their actual application have been assessed, unlike a Type 1 statement, which is only a snapshot..
The ISAE 3000 declaration assesses, among other things, our access control, documentation, security policies and our ongoing evaluation and improvement of internal controls.
A guarantee for you
With the ISAE 3402 and ISAE 3000 declarations, we can guarantee our customers that we have documented control over both operations and security, both in our solutions and in our processing of data.
This means that you as a customer can safely choose us as a supplier, knowing that we comply with international standards, both when it comes to stability, access control and system development, and when it comes to GDPR and information security.
A guarantee for your end customers
As a data controller, you are responsible for protecting your end customers' data and thus ensuring that your suppliers meet the requirements of the General Data Protection Regulation.
With our ISAE 3000 declaration, you receive documentation that we, as a data processor, work systematically and securely with personal data. At the same time, our ISAE 3402 declaration shows that our development and operating procedures are controlled and stable.
In addition, we also help you to ensure that your web solution is
compliant with correct cookie and privacy policy. We are up-to-date on the applicable regulations and can guide you through the necessary steps to comply with the requirements.
Documentation of technical measures
When you choose itpilot as your IT supplier, you don't just get a solution - you get documentation that we have the technical and organizational measures in place.
Our ISAE 3402 declaration documents our work with development and operations, while ISAE 3000 provides you with documentation that we comply with GDPR and ensure responsible data processing.
Both statements are prepared by an independent auditor and can be directly incorporated into your compliance and oversight work.
Close collaboration with PwC
Both our ISAE 3402 and ISAE 3000 declarations have been prepared in collaboration with PwC, who have conducted sample audits of our work processes. The result of this is a report and statement from PwC based on the observations and audits they have conducted with us, which has provided us with the official ISAE 3402 and ISAE 3000 statements.
Read More
ISAE stands for International Standard on Assurance Engagements, and are therefore international standards. Would you like to delve deeper into what our ISAE statements document and what the difference is between ISAE 3402 and ISAE 3000? Then read more in our blog post: