Security at Available

We build software that our clients trust with their business and their data. This site is where we show our work: how we protect information, what we commit to, and where we are on our compliance journey.

Our program

Available operates an Information Security Management System (ISMS) aligned with ISO/IEC 27001:2022. Security at Available is risk-based, owned by management, and built into how we develop and operate software — peer-reviewed changes, least-privilege access with multi-factor authentication, encryption in transit and at rest, and tested backups.

We already operate under GDPR with data processing agreements and documented processing activities, and our security program builds on that same discipline.

Certifications & frameworks

Framework Status
ISO/IEC 27001:2022 Implementation in progress — targeting certification TODO: quarter/year
GDPR In place — DPAs available for clients

On this site

Contact

Security questions, documentation requests (e.g. our Statement of Applicability under NDA), or anything you'd like to verify: security@available.dk (TODO: confirm address).

Found a potential vulnerability? Please report it to the same address — we appreciate responsible disclosure and will respond quickly. (TODO: link full disclosure policy once approved.)