Trust anchored in credentials
Our certifications.
Your assurance.
Verified, not claimed.
We hold and maintain the compliance frameworks and professional certifications our clients need us to have. Audit reports and attestation letters available under NDA for enterprise evaluations.
Organizational Certifications
SOC 2 Type II
Security, Availability, and Confidentiality Trust Service Criteria. Annual audit by an independent CPA firm. Report available under NDA.
ISO 27001
Information Security Management System certification. Covers all Kaimz systems, processes, and personnel handling client data. Certified body: BSI.
HIPAA
Full Business Associate Agreement (BAA) capability. Our healthcare clients operate under HIPAA without needing a separate BAA negotiation process.
PIPEDA & PHIPA
Full compliance with the Personal Information Protection and Electronic Documents Act and Ontario's Personal Health Information Protection Act. Canadian data sovereignty enforced.
PCI DSS
PCI DSS v4.0 compliant for all services touching cardholder data environments. Qualified Security Assessor (QSA) partner relationship for Level 1 audits.
NIST CSF 2.0
All Kaimz services map to NIST Cybersecurity Framework 2.0 functions: Govern, Identify, Protect, Detect, Respond, and Recover. Framework mapping available on request.
Team Certifications
OSCP — Offensive Security Certified Professional
CISSP — Certified Information Systems Security Professional
CEH — Certified Ethical Hacker
AWS Certified Security — Specialty
Azure Security Engineer Associate
GREM — GIAC Reverse Engineering Malware
GCFA — GIAC Certified Forensic Analyst
CISM — Certified Information Security Manager