Trust & Security
Certified, audited, accountable.
Our clients run mission-critical solutions on Daia, so independent scrutiny matters. These are the standards and frameworks V88 holds, what each one covers, and what it means for you.
ISO 27001
UKAS-accredited certification
The international standard for information security management. Our ISMS is independently audited by a UKAS-accredited certification body and covers how we design, build, host and manage client solutions on Daia.
What it means for you
Your data sits inside a formally audited system of controls that is reviewed every year, not a set of good intentions.
Cyber Essentials
National Cyber Security Centre scheme
The UK Government's baseline standard for cyber security, backed by the NCSC. It confirms the fundamental technical controls are in place across our systems: firewalls, secure configuration, access control, malware protection and security updates.
What it means for you
A prerequisite for much of UK public sector procurement, and the foundation everything else is built on.
G-Cloud
Crown Commercial Service framework
The UK public sector's framework for buying cloud services, run by Crown Commercial Service (CCS). V88 has been named as a supplier on the framework.
What it means for you
Councils, NHS bodies and government departments can engage us through a compliant call-off rather than a lengthy tender.
What this means in practice
On Daia
Every solution we deliver runs on Daia, our managed platform. The controls audited under ISO 27001 apply to how your solution is hosted, monitored and maintained, not only to how it is built.
Across our team
Cyber Essentials covers the devices, accounts and networks our people use every day, so the environment your solution is built and supported from meets the same baseline.
For the public sector
G-Cloud gives councils, NHS bodies and central government a straightforward, compliant route to working with us, with the security credentials most frameworks ask for already in place.
Need the paperwork?
Certificates, policy summaries and completed security questionnaires are available on request. We'd rather you asked than assumed.