# Certifications

**Summary:** Explore our commitment to top-tier security and compliance as a certified AWS Partner. We meet rigorous standards with ISO/IEC and SOC certifications, ensuring robust data protection and sustainability.

**In short:** As certified AWS Partner, we are committed to adhere to rigorous infrastructure compliance.

**Last updated:** 2024-11-05

As certified AWS Partner, we passed the AWS Foundational Technical Review (FTR, including its Sustainability Pillar) with infrastructure that is certified for compliance with 
- ISO/IEC 27001:2013, 
- 27017:2015, 
- 27018:2014, and 
- ISO/IEC 9001:2015. 

These certifications are performed by independent third-party auditors. Additionally, we have access to independent third-party examination reports that demonstrate how our infrastructure on AWS achieves key compliance controls and objectives. These are reports for:
- SOC 1 (formerly SSAE 16/ISAE 3402), 
- SOC 2 Security, Availability & Confidentiality, 
- SOC 2 Privacy Type I, and
- SOC 3 Security, Availability & Confidentiality.  

Our organization itself is not automatically certified by association, but the ISO/IEC 27001:2013 certification for AWS covers the AWS security management process over the scope of our services and data centers.

Note: for security reasons, we cannot send copies of the SOC reports to third parties. However, there is an [information security policy description](https://unless.com/en/technology/security/) available to all users, as well as a more formal [Security Addendum](https://test.unless.com/en/platform/security-addendum/).

On top of the above, we are closely monitoring ISO/IEC TR 24028, which offers guidelines for AI trustworthiness as part of the broader AI-focused standards by ISO/IEC JTC 1/SC 42. Although it’s a technical report and not an official standard for certification, it provides valuable implementation guidance.
