Trust Center
Our Commitment to Information Security, Data Protection, and Sustainability
Highest standards in information security, data protection, and sustainability.
Security & Compliance at VamiSec
Transparency is the foundation for trust. Here you will find all information about our certifications, management systems, security policies, and sustainability commitments.

ISO/IEC 27001 certified – by DAkkS-accredited body
VamiSec has successfully completed ISO/IEC 27001 certification through a DAkkS-accredited certification body. This confirms the effectiveness of our Information Security Management System at the highest level.
Our Management Systems & Compliance
VamiSec operates an ISO/IEC 27001-certified ISMS alongside further actively maintained management systems, meets the most important European regulations, and is transparent about its sustainability commitments.
ISO/IEC 27001
Information Security Management System (ISMS)
VamiSec operates a fully implemented and certified ISMS according to ISO/IEC 27001. Certification is carried out by a DAkkS-accredited certification body and maintained through regular surveillance audits.
ISO/IEC 42001
AI Management System (AIMS)
VamiSec maintains an AI Management System per ISO/IEC 42001 for the responsible, ethical, and secure use of AI systems — from risk assessment through governance to continuous monitoring.
GDPR
General Data Protection Regulation
VamiSec meets all requirements of the EU General Data Protection Regulation. Our processes, systems, and contracts are fully GDPR-compliant.
EU AI Act
European AI Regulation
VamiSec consistently aligns its AI-powered products and services with the requirements of the EU AI Act — including risk classification, transparency obligations, and technical documentation.
Cyber Resilience Act (CRA)
Product security for digital products
Our products meet the requirements of the EU Cyber Resilience Act. VamiSec implements security-by-design, systematic vulnerability management, and security updates throughout the entire product lifecycle.
NIS2 Directive
EU Directive for Network and Information Security
VamiSec meets the requirements of the NIS2 Directive (EU 2022/2555) and consistently implements the resulting obligations — including risk management, reporting duties, supply chain security, governance structures, and cyber resilience measures.
ISO 14001
Environmental Management System (EMS)
VamiSec operates a documented Environmental Management System per ISO 14001:2026 — from environmental aspects and compliance obligations to measurable environmental objectives. Certification by a DAkkS-accredited body is in preparation (audit planned for 2027).
EcoVadis
Sustainability Rating (ESG)
VamiSec is currently undergoing its first EcoVadis sustainability assessment covering environment, labor & human rights, ethics, and sustainable procurement. Policies and supporting evidence have been established for all four themes; KPI baselines are currently being collected.
Freely available Downloads
The following policies are available for download without registration. The Statements of Applicability (SoA) are available upon request.
Information Security Policy
PDF · Public · Current Version
Overarching information security policy with strategic direction, objectives, and principles of the ISMS at VamiSec.
[ View PDF ]AI Security & Compliance Policy
PDF · Public · Current Version
Policy for the secure and responsible use of AI systems including governance, risk management, ethics, and regulatory requirements.
[ View PDF ]Sustainability & ESG Policy
PDF · Public · Current Version
Overarching sustainability and ESG policy covering environment, labor & human rights, ethics, and sustainable procurement at VamiSec.
[ View PDF ]Environmental Management Policy
PDF · Public · Current Version
Environmental policy per ISO 14001 with commitments to environmental protection, prevention of pollution, fulfillment of compliance obligations, and continual improvement.
[ View PDF ]Statement of Applicability (SoA) – ISO 27001
PDF · On Request · Annex A Controls
Statement of applicability of controls from Annex A of ISO/IEC 27001 including justification for selection or exclusion of individual controls.
[ On Request ]Statement of Applicability (SoA) – ISO 42001
PDF · On Request · AI Controls
Statement of applicability of controls from ISO/IEC 42001 for the AI Management System including implementation status and justification.
[ On Request ]Additional Policies & Guidelines
We are happy to provide the following documents upon request.
Available on Request
For security reasons, we only provide detailed internal policies after prior review and upon legitimate request.
ISMS Policies – ISO/IEC 27001
AIMS Policies – ISO/IEC 42001
PIMS Policies – Data Protection / GDPR
CSMS Policies – Cyber Security Management System
EMS & ESG Documents – ISO 14001 / EcoVadis
Request Documents
Fill out the form and we will provide you with the requested documents after review.
Protect Your Organization Now!
Contact us for personalized consulting and a security solution tailored to your requirements.

Valeri Milke, CEO of VamiSec
“Only when all instruments are well-coordinated will your organization be secure and compliant.”