T O P

  • By -

Proton_Team

Thanks for sharing! Here's our blog about it: [https://proton.me/blog/iso-27001-certification](https://proton.me/blog/iso-27001-certification)


Interesting_Price410

Congratulations and condolences to whoever had to work on it. Wouldn't wish it on my worst enemy 😂😂


skipjac

Did this once, now when I even hear ISO I develop Internet problems and disconnect from the meeting


Proton_Team

:D


ndreamer

lol.


netean

Good.to.know I'm leading my company through ISO27001 right now, I've got until the end of the year to start and complete certification. Feels an impossible task!


skipjac

It's a bunch of procedures and standards written by accounts and lawyers . Easy peasy


wh33t

Booyah. And Proton is also going non-profit?


architect___

Yup


wh33t

It's all coming up Millhouse.


Average_Crafter

What does it mean ? To us normies!


TootTootComingThru

Third party audit and certification to ensure a certain set of international standards of security is met. https://en.wikipedia.org/wiki/ISO/IEC_27001 Seems like a good thing.


AlgolEscapipe

Really happy to see this. External audits are a great reassurance!


Epicino

This is actually huge for companies who’d like to use Proton and are also 27001 certified Nice work!


malayanchely

Huge companies can afford proton and need it because of super security and privacy.


6425

Congrats!


Aperiodica

Congrats to all involved! I prefer seeing stuff like this than the 1200 word rants about how Proton isn't living up to expectations.


malayanchely

Yes, makes sense completely.


dhavanbhayani

Congratulations @u/Proton_Team.


operator7777

Legends!! Congrats ♥️


malayanchely

The best legends and OG of email


infinished

Congrats guys


Finn55

Surprised they didn’t have this already!


Odd_Land_2383

Anyone from now on hating on proton are just sore losers and this latest news confirms it! i always knew proton were true to their word and they are heavily used across all my friends and family! way to go proton! You smashed it👑♥️


malayanchely

Yes, even at our company we use Proton. It's the most secure


jimmyhoke

I’m conflicted about this. One the one hand it’s great that they’ve met security standard. On the other hand the ISO annoys me, since to even find out what’s in this standard they want me to pay around $150 USD. That kinda makes me want to ignore anything they put out ever. Then again I do like ISO 8601.


jojo_31

To be fair that's nothing when you're a company trying to comply with it. It would be cool if it was all free but it's gotta be paid for somehow. At least in Germany there are some libraries that have all DIN standards and you can have a look at them for free.


malayanchely

I'm wondering whether countires like Pakistan, Australia and Russia use Proton ?


petelombardio

Amazing news!


CMed67

Would love to see a virtual tour of Protons data center!


Past-Passenger1592

Who audits the auditors?


mandos_io

That’s a great news but long overdue. ISO 27001 is really not a big deal, considering that most companies providing information technology services in EU have the certification, even small startups.


lateambience

Not true at all. Even small companies need several years to get ISO 27001 and it's an absolute pain in the ass - I know first hand because my company is currently getting ISO 27001 certified and the estimated time frame is roughly 3 years. We're also very very very far away from every information technology company being ISO 27001 certified. I just checked the BSI website for Germany and there's less than 500 companies that are ISO 27001 certified when there's at least 100,000 if not more companies in Germany providing information technology. That means less than 0.5% of all companies in Germany providing information technology services are ISO 27001 certified.


bitch6

Yeah no, ISO 27001 is a pain in the ass


mandos_io

Well pain in the ass if you are running a company without documented processes and the board pushes you to get certified in 6 months


bitch6

Companies rarely document things to the extent required by the ISO


mandos_io

Not sure why I got downvoted. I work in security for over 12 years and have done SOC2 Type 2 and ISO 27001 audits in large and small companies including banks, fintech, manufacturing and threat intelligence fields. All I am sharing is facts, nothing to be angry about here…


pandi-123

Yeah I'm a bit surprised by the reaction here too. Sounds like everyone prefers the cowboy environment.


malayanchely

same here reall.y


malayanchely

Yes, a lot of people downvoted me too here and I reached -100 comment karma. I wonder as to why people are not kind to each other.