Certified Security

ISO 27001 Certification

Commitment to information protection and data privacy.

About the Certification

What is ISO 27001?

ISO 27001 is an international standard that guides companies in managing information security. It ensures that sensitive data is protected against unauthorized access, leaks, and losses. For companies, it represents process maturity and risk reduction, conveying trust and credibility to clients.

Why is this certification important?

Because it demonstrates that the company protects its data seriously, following international information security standards. This reduces risks, ensures compliance with laws, conveys trust to clients, and strengthens the brand’s credibility in the market.

ISO 27001 and LGPD

ISO 27001 and the LGPD complement each other in data protection. ISO 27001 provides best practices for ensuring information security, while the LGPD regulates the use of personal data in Brazil. By following ISO, the company strengthens its security structure and meets several LGPD requirements, demonstrating its commitment to privacy and legal compliance.

Our Certification Journey

Discover the path we took to reach this important milestone in our history.

2021

In 2021, we identified the need to obtain ISO certification but chose to postpone the process, as we were still structuring company operations and expanding the team to establish well-defined areas.

1
2

2023

We resumed the certification idea during the planning of our in-person meeting, when the ISO topic had been gaining traction internally. In this year, with more structured processes and a larger team working in the areas, the initiative returned more mature and aligned with our organizational moment.

2024

We hired an audit aiming to obtain certification and decided that we would go through the entire process still in 2024. Throughout the year, we matured the certification idea and, in the second semester, carried out a pre-audit as preparation.

3
4

2025

We successfully passed phases 1 and 2 of the audit, the first conducted online and the second in person. In both, no major nonconformities were identified. This result reflects our continuous investment in technology, training, skills development, studies, and alignment. All with a clear goal: consolidating certification as part of our security culture.

External Audit and Certification

Certificate issuance in the second half of 2025.

Compliance and Transparency

Our commitment to data protection goes beyond ISO 27001 certification.

How we ensure compliance with LGPD

Data mapping

We identify all personal data flows in our systems and processes.

Legal basis for processing

We ensure that all personal data processing has an appropriate legal basis.

Data subject rights

We implement processes to comply with data subjects' rights under the LGPD.

Security measures

We adopt technical and organizational measures to protect personal data.