Certification
Standard: ISO/IEC 27001:2022
Certificate number: 940AGIS080304
Certification body: Accurate Global Inc
Accreditation: United Accreditation Foundation, accreditation no. CB-MS-10338, recognised under the IAF Multilateral Recognition Arrangement
Validity: issued 22 July 2026, valid until 21 July 2029, subject to annual surveillance audits
Design, Development, Operation, Maintenance and Support of Data Integration and Artificial Intelligence-Powered Software Solutions.
Statement of Applicability Ver 1.0, dated 3 June 2026. Certification applies to the information security management system operated by Synapze GmbH. It does not certify any individual product or service.
Our ISMS is built on the Annex A controls of ISO/IEC 27001:2022, as recorded in our Statement of Applicability. In practice this covers access control and least-privilege administration, secure development practices across the software lifecycle, vulnerability and dependency management, supplier and subprocessor assessment, cryptography and key management, logging and audit trails, incident detection and response with notification timelines aligned to GDPR Article 33, and business continuity with defined recovery objectives and tested restoration procedures. Because Synapze deploys inside your own infrastructure, these controls govern how we build and operate the software, while custody of your data and models remains with you.
We can provide a copy of the certificate, a summary of our Statement of Applicability, our data processing agreement and subprocessor list, architecture and data-flow documentation, and completed security questionnaires using your own template or a standard framework. The certificate can also be verified directly with the certification body at accurateiso.com. Write to hello@synapze.io and we will send the relevant documents to your procurement or vendor risk team, under NDA where appropriate.