Ahya maintains a comprehensive Information Security Management System (ISMS) aligned with ISO 27001. Our ISMS includes detailed policies and controls covering legal, technical, and operational aspects of risk management to safeguard customer data and ensure business continuity.
ISO 27017
Ahya adheres to ISO 27017 through our partnership with enterprise cloud providers. It introduces best practices and controls for managing cloud-specific risks - such as access control, virtual machine configuration, and tenant isolation.
ISO 27018
Ahya complies with ISO 27018 through our partnership with enterprise cloud providers to ensure the protection of personally identifiable information (PII).
SOC 2 Type II
Ahya adheres to SOC 2 Type 2 for demonstrating effectiveness across five key criterias including Security, Availability, Processing Integrity, Confidentiality and Privacy.
VAPT
We regularly conduct Vulnerability Assessments and Penetration Testing to proactively identify and address security weaknesses across our products. These assessments enhance the resilience of our systems against emerging cyber threats.
TAWAZUn
Registries & methodologies
We source our projects from accredited global verified registries, which have stringent standards, thorough MRV, and are aligned with ICVMI principles.