Compliance

Defguard - Certified, Audited, and Transparent

ISO-27001:2023 Certification

Our ISO-27001:2013 certification and rigorous internal audits ensure that our systems, processes, and operations meet globally recognized benchmarks. Beyond compliance, we offer fully transparent development process and Secure By Design approach.

Certificate issued: 7 January 2026

Valid until: 6 January 2029

Certificate No.: PL018610/P

Certification BodyBureau Veritas Certification Polska
StandardPN-EN ISO/IEC 27001:2023-08
Information security, cybersecurity and privacy protection — Information security management systems — Requirements
Certificate NumberPL018610/P
Issue Date7 January 2026
Certification Cycle Start Date7 January 2026
Valid Until6 January 2029
Scope of CertificationDELIVERING IT CYBERSECURITY SOLUTIONS FOR IDENTITY, SSO, REMOTE ACCESS, AND DEVICE ACCESS MANAGEMENT IN NETWORKS.
VerificationTo verify certificate validity please contact:
Bureau Veritas Polska
+48 22 549 04 00

Certificate

Issued by Bureau Veritas Polska Sp. z o.o., ul. Domaniewska 44A, 02-672 Warszawa, Poland

Defguard ISO 27001:2023-08 Certificate issued by Bureau Veritas Certification Polska - Certificate No. PL018610/P, Valid from 7 January 2026 to 6 January 2029

Why ISO 27001 Matters for Our Users

At Defguard we have always built security into the core of our product — from protocol-level WireGuard® MFA, through open-source transparency, to data sovereignty and zero foreign legal exposure.

Achieving ISO 27001 certification formalizes and externally validates our Information Security Management System. It demonstrates to enterprises, regulated organizations and public sector clients that:

  • Information security risks are systematically identified, assessed and treated
  • Security controls follow international best practices
  • Processes are continuously improved and audited
  • We maintain the same high standards internally that we provide to you
  • Your trust in Defguard as a secure, reliable VPN & zero-trust platform is backed by third-party certification

Complements our existing compliance strengths

  • NIS2-ready architecture with true VPN-level MFA
  • Full EU data residency & governance (Poland-based)
  • Audit-ready logs and SIEM integration
  • Support for GDPR, HIPAA, PCI DSS, NIST & similar frameworks through strong technical controls

Are you missing any compliance certifications? Feel free to reach out to us at sales@defguard.net