We’re ISO 27001 compliant: Why that’s important

Published on June 24, 2019

UI extensions

Subscribe for updates

Build better digital experiences with Contentful updates direct to your inbox.

We are very proud to announce that Contentful is now ISO 27001 compliant. If you’re a Contentful customer, partner or employee, this is incredibly exciting. We’ve always been committed to upholding the highest standard of information security, and our efforts have been validated by the most important certification body.

In short: You can rest assured that your information and data are secure with us.

When companies need proof of their commitment to data and information security, they turn to the ISO 27001 compliance certification. The certification requires meeting a set of rigorous information security standards, including the management of assets such as financial information, intellectual property, employee details and third party information. The scope of our certification includes all of our products, data centers and support processes.

Meeting the ISO-27001 standard goes far beyond a tick on a form, and instead includes thousands of pages of paperwork and meticulous and unrelenting review. You would think that a certification like the ISO 27001 would be industry standard, but unfortunately this isn’t the case.

There are still many CMS offerings on the market that don’t meet this standard, and working with them can be risky. Our ISO 27001 compliance certification gives us the framework to manage risks, therefore mitigating yours –– we’ve been certified as a reliable and trustworthy partner for your content. We hope this compliance program gives you confidence in Contentful’s ability to keep your information safe and secure.

What the ISO 27001 compliance certification helps you do

Aside from letting you breathe easy, this certification also helps you:

  • Promote your own compliance requirements as mandated by PCI DSS, GDPR and others

  • Know that security is a priority at Contentful, and our senior management is accountable for information security

  • Focus on our value instead of worrying about security concerns. This is a big one for us! We’re happy to take one major worry off of your plate so that you can concentrate on creating, managing and distributing content to your digital platforms.

The work doesn’t stop here. A security program is a living thing that requires careful maintenance. Contentful’s security team — along with an extended circle of security champions — is constantly working to improve the program and keep information security risks under control.

Are you interested in reading more about Contentful’s commitment to information and data security? Check out these links:

Subscribe for updates

Build better digital experiences with Contentful updates direct to your inbox.

Related articles

As marketers and businesses, it's time for all of us to embrace composable content, going beyond websites, mobile apps, social media, and email marketing.
Insights

Embrace composable content: A new approach for marketers in the digital age

June 28, 2023

Find the right CMS for your business. Exploring the pros and cons of remaining on Craft or migrating to cloud-native headless platforms such as Contentful.
Insights

Craft to Contentful: When the right tool for where you’ve been is the wrong tool for where you need to go

September 4, 2024

This post explains the difference between CMSes and DXPs.
Insights

What’s a digital experience platform? Get the scoop on DXPs, CMSes and where content platforms fit into the modern stack

July 12, 2021

Contentful Logo 2.5 Dark

Ready to start building?

Put everything you learned into action. Create and publish your content with Contentful — no credit card required.

Get started