Information security and privacy
We’re committed to keeping your information private and secure, and we underwrite our commitment by achieving and complying with the following certifications and standards.
ISO 27001 requires a robust Information Security Management System (ISMS) that builds customer trust, ensures regulatory compliance, enhances risk management, and provides a competitive advantage through certified data protection.
ISO 27017 mandates additional Cloud Service Provider-specific security guidelines, ensuring stronger data protection, compliance, and enhanced trust in cloud service operations.
ISO 27018 ensures Cloud Service Providers protect personal data, enhancing privacy, protection, compliance, customer trust, and a competitive advantage in data-sensitive industries.
Cyber Essentials Plus (CE+) certifies and strengthens our advanced cybersecurity measures, demonstrating robust protection against threats, building trust and allows us to align and work with private sector businesses and public sector organisations requiring CE+ certification.
CISP is a joint industry and government initiative for cyber security professionals in the UK to collaborate on cyber threat information in a secure and confidential environment.
Applicable is a member of CISP, and this helps us to increase situational awareness and reduce the impact of cyber attacks on our customers and contribute knowledge and information to support the wider community of UK businesses and organisations.
Applicable has always been and remains committed to the highest standards of information security and privacy taking matters of security and privacy very seriously.
We have integrated the GDPR (EU and UK) requirements and necessary approaches into Applicable’s existing information security framework as standard policy.
Specific privacy risk assessments and management controls are included in the overall technical and organisational measures and controls to deliver privacy by design and default, and to satisfy GDPR (EU/UK). Contractual arrangements with customers, contractors and suppliers reflect privacy legislation. Privacy policies and notices are published on the Applicable website with comprehensive supporting policies, procedures, and processes in place to ensure Applicable complies with GDPR (EU/UK).
Our Website Privacy Statement is available here.
Additional Privacy Statements are available as follows:
Privacy Statement – Business Services
The Data Protection Officer (DPO) contact for Applicable Limited in the UK, this is Jon Bennett, Director of Information Security. A dedicated email address for contact for data privacy and protection is dpo@applicable.com.
The Data Protection Officer (DPO) contact for Applicable Limited in the EEA is an organisation called DataRep. A dedicated email address for contact for data privacy and protection is applicable@datarep.com.
Get in touch
If you want to extract maximum value from your investment in Microsoft 365, get in touch.
Our Microsoft 365 consultancy services help organisations of all sizes do just that.
Learn how…