Mindtickle Strengthens Security with Completion of ISO Certifications
Andrea Weinfurt on January 10, 2025
SAN FRANCISCO – JANUARY 10, 2025 – Mindtickle, the industry-leading revenue enablement platform, today announced the completion of multiple globally recognized ISO security and privacy certifications. These provide a multi-layered, robust control framework with ISO-compliant processes, ensuring greater data protection, minimized downtime, and consistent service availability. These certifications include:
- ISO 27001:2022 – provides a framework for managing information security, reducing breach risks, and enhancing trust.
- ISO 22301: 2019 – ensures operational resilience with a structured approach to business continuity during disruptions.
- ISO 27701: 2019 – integrates privacy controls into security management to safeguard personal data and meet compliance needs.
- ISO 27017: 2015 – offers cloud-specific security practices to protect cloud environments from evolving threats.
- ISO 27018: 2019 – safeguards PII in public clouds, ensuring privacy and regulatory compliance.
With cloud-specific security controls, strong privacy practices, and a proactive approach to risk management, this structured framework reflects management’s commitment to accountability and mitigation of potential risks. The audit was conducted by a group of experienced auditors from TUV NORD, who exhaustively tested controls implemented in the Mindtickle platform across all the locations.
“At Mindtickle, we are committed to providing our customers with the highest standards of security and privacy in our ecosystem. These additional certifications reaffirm our dedication to safeguarding customer data and ensuring robust security practices across our platform. By obtaining these certifications, we are further solidifying our promise to maintain trust, transparency, and compliance as core pillars of our business operations.” said Deepak Diwakar, Chief Operating Officer (COO) and Data Protection Officer (DPO) at Mindtickle.
Beyond ISO certifications, Mindtickle reinforces its security measures through semi-annual SOC 2 and SOC 3 audits, which align with Trust Service Principles for security, availability, confidentiality, and privacy. Mindtickle also performs Disaster Recovery (DR) testing, validating the effectiveness of its business continuity plans.
The platform also undergoes semi-annual penetration testing of web applications, AI functionality, network infrastructure, and mobile apps to identify and address vulnerabilities effectively. Mindtickle consistently achieves an ‘A’ grade in SecurityScorecard evaluations, ranking third globally in the “Information Services” category and ninth across all categories among 12 million rated companies.
Our adherence to industry-specific audits, such as HIPAA and 21 CFR Part 11, ensures that we help customers meet their applicable industry regulations. In addition, Mindtickle maintains compliance with security frameworks such as CSA STAR Level 1 (CAIQ), SIG Lite, VSA, CyberGRX, HECVAT, etc.
Furthermore, Mindtickle adheres to global data privacy laws, including GDPR, CCPA, CPRA, UK Data Protection Act 2018, LGPD, FADP, PIPL, PDPA, PIPEDA, TDPSA, VCDPA, UCPA, CPA, CTCDPA, DPDPA, MCDPA, Works Council, etc. To facilitate safe international data transfers, Mindtickle complies with SCCs, IDTA addendums, and frameworks like APEC and the EU-U.S. and Swiss-U.S. Data Privacy Frameworks, ensuring robust cross-border data protection.
To learn more about Mindtickle’s Security and Compliance, refer to Mindtickle’s Trust Page.
About Mindtickle
Mindtickle is the market-leading revenue enablement platform that combines on-the-job learning and deal execution to drive behavior change and get more revenue per rep. Mindtickle is recognized as a market leader by top industry analysts and is ranked by G2 as the #1 sales onboarding and training product. This year, Mindtickle won a Bronze Stevie Award for Technology Excellence.
Media Contact:
Andrea Weinfurt
[email protected]