Security at Centra

Explore our certificates, compliance, resources and frequently asked questions.

1. Introduction

Centra is committed to prioritizing security through building information security culture across the whole organization and following established security and privacy standards that guarantee confidentiality, integrity, and availability of information and our products.

2. Certifications

ISO 27001:2022 Information security, cybersecurity and privacy protection — Information security management systems — Requirements

Centra operates a certified Information Security Management System (ISMS) compliant with ISO 27001:2022 standard. Our ISMS covers all locations and processes in the organization. The certification of the ISMS is done by TUV Nord.

3. Compliance

As a global company with the headquarter in the EU Centra has to comply with different national regulations concerning privacy and security. Some of these regulations are listed below.

(EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation) - GDPR

As an EU company we comply with the GDPR regulation. We have implemented the ISO27001-compliant ISMS to ensure the protection of personal data at any stage of its processing.

4. Resources

Below you can find some publicly available information security or privacy resources. If you cannot find what you are looking for please contact us directly.

ISO 27001:2022 Certificate

An up-to-date certificate of our Information Security Management System compliant with ISO 27001:2002 standard.

ISO 27001:2022 Certificate

ISO 27001:2022 Statement of Applicability

A list of information security controls listed in the Annex A of ISO 27001:2022 with the implementation statement. You can use this resource to understand the technical and organizational measures (TOMs) that are implemented by Centra.

ISO 27001:2022 Statement of Applicability

ISMS Information Security Policy

An entry level policy describing on the high level Centra’s Information Security Management System. You can use this policy to understand our ISMS setup in the organization.

ISMS Information Security Policy

Centra Platform Privacy Policy

A policy describing our approach to managing privacy of personal data on the Centra platform. You can use this policy to understand your rights as an individual (data subject) or the split of responsibilities for privacy between a data controller and a processor of personal data.

ISMS Centra Platform Privacy Policy

6. Security contact

For any security related questions or information please contact us at security@centra.com.