iExtend has achieved ISO/IEC 27001 certification, the internationally recognised standard for information security management.
The certification, states the firm, provides a comprehensive, risk-based approach to identifying, assessing and managing information security risks across people, processes and technology “…providing policy owners, advisers and industry partners with further assurance on how the business manages information security”.
iExtend CEO David Sarkis said as financial advisers increasingly rely on connected technology and exchange growing volumes of sensitive client information, robust information security is fundamental to earning and maintaining trust.
Certification is an important milestone, but it isn’t the finish line…
“The certification reflects our long-term commitment to protecting the highly sensitive information entrusted to us,” he said.
“It is about embedding information security into our culture and ensuring every member of our team understands their responsibility.”
He said the ISO framework also supports iExtend’s approach to responsible innovation by requiring security risks to be considered when new systems and technologies are assessed, integrated and monitored.
“Certification is an important milestone, but it isn’t the finish line,” Sarkis said. “We will continue to strengthen our approach through regular risk assessments, staff education, independent audits and the ongoing review of our security controls.”




