Tecala achieves ISO27001:2022 certification for security
Tecala has announced its attainment of the ISO27001:2022 certification, demonstrating compliance with international standards for information security and risk management processes.
The certification marks a significant achievement for the technology services provider and underscores its commitment to security and governance with its customers and industry partners.
Murray Mills, Head of Cyber Security at Tecala, stated, "Tecala is committed to delivering robust cybersecurity protection for customers and this new certification provides them with the certainty that they're working with an industry partner whose processes and systems are internationally recognised for good governance and aligned with best-in-class security frameworks. Indeed, having effective security policies in place is vital to ensure we are able to meet the needs of our customers at all times."
The certification process involved a comprehensive audit of Tecala's policies and procedures against rigorous standards. This required demonstrating ongoing improvement across various aspects, including tooling, policies, and procedures. Tecala also emphasises the importance of continuous staff training to enhance the customer's overall security posture.
The assessment, conducted by GCC, began in November and concluded in December. It included site visits to Tecala's Sydney headquarters, its Norwest Operations Centre in Greater Western Sydney, and its Melbourne office, where interviews and validation activities took place.
Being accredited with the new ISO standard not only bolsters Tecala's ability to meet clients' compliance needs with security regulations but also aligns with environmental considerations under ISO:27001:2022/Amd 1:2024 read through its climate initiatives.
Mills remarked, "With ISO27001:2022 certification now in place, we have absolute confidence that we're working within proper guidelines and best practices to ensure the highest possible security standards are in place. We also have a comprehensive, validated security framework in areas such as continuous monitoring, management and improvement so that all staff follow a common directive. Our customers can benefit from our continued commitment to safeguarding sensitive information within a robust compliance framework and a focus on governance."