Our approach to information security
Protecting customer data and information is a top priority at awork.
We rely on clearly defined processes, responsibilities, and internationally recognized standards to ensure a consistently high level of security.
ISO 27001 & Information Security Management System (ISMS)
awork is ISO 27001 certified. Please download our actual certificate here.
Our Information Security Management System (ISMS) ensures that information security is systematically implemented, monitored, and continuously improved.
The certification scope includes:
the awork SaaS platform,
all internal systems and processes used to develop, deliver, and operate the product,
all employees involved in these processes.
Information security responsibilities
Responsibility for information security at awork is clearly defined and anchored at leadership level:
Our CTO is responsible for technical information security, including product, infrastructure, and system architecture.
Our COO is responsible for organizational and procedural information security, including governance, policies, compliance, and internal processes.
Security-related decisions are aligned jointly and reviewed on a regular basis.
Management is actively involved in the ongoing development of the ISMS.
This setup ensures that both technical and organizational security aspects are addressed holistically.
Core security principles
Established ISMS in accordance with ISO 27001
Regular risk assessments and internal audits
Clear separation of technical and organizational responsibilities
Documented processes for handling security incidents
Continuous review and improvement of security measures
Transparency & limitations
To maintain a high level of security, we intentionally limit the amount of technical or architectural detail shared publicly.
If you are looking for additional information regarding our ISMS you can either visit trust.awork.com or send an e-mail to [email protected].
