Security at Available
We build software that our clients trust with their business and their data. This site is where we show our work: how we protect information, what we commit to, and where we are on our compliance journey.
Our program
Available operates an Information Security Management System (ISMS) aligned with ISO/IEC 27001:2022. Security at Available is risk-based, owned by management, and built into how we develop and operate software — peer-reviewed changes, least-privilege access with multi-factor authentication, encryption in transit and at rest, and tested backups.
We already operate under GDPR with data processing agreements and documented processing activities, and our security program builds on that same discipline.
Certifications & frameworks
| Framework | Status |
|---|---|
| ISO/IEC 27001:2022 | Implementation in progress — targeting certification TODO: quarter/year |
| GDPR | In place — DPAs available for clients |
On this site
- Security overview — how we secure our organisation, our product, and your data
- Information Security Policy — our top-level policy, published in full
Contact
Security questions, documentation requests (e.g. our Statement of Applicability under NDA), or anything you'd like to verify: security@available.dk (TODO: confirm address).
Found a potential vulnerability? Please report it to the same address — we appreciate responsible disclosure and will respond quickly. (TODO: link full disclosure policy once approved.)