Independently Certified

Verified by Audit.
Trusted by Design.

Orizon operates under independently audited management systems for both Information Security and Quality. Every certificate below is issued by AXE REGISTER under IAF mutual recognition and is downloadable in full.

IAF Mutual RecognitionAnnual surveillance auditsEU-resident, GDPR-native

ISO 9001:2015

Orizon S.r.l.
Brescia, Italy
Cert. No.
IT24-18308A
Issuer
AXE REGISTER
Issued
5 September 2024
Valid until
4 September 2027
Scope

Provision of services in cybersecurity, data centre security and information security in general, including through dedicated applications and software.

Current

ISO/IEC 27001:2022

+ ISO/IEC 27017:2015

Orizon S.r.l.
Brescia, Italy
Cert. No.
IT24-18308D
Issuer
AXE REGISTER
Current issuance
15 April 2026
Valid until
4 September 2027
Scope

Provision of services in cybersecurity and data centre security, including through dedicated applications and software. Information Security Management System extended with ISO/IEC 27017:2015 cloud-services controls.

ISO/IEC 27001:2022

Orizon Cyber Security, S.L.U.
Madrid, Spain
Cert. No.
ES25-09905D
Issuer
AXE REGISTER
Issued
10 September 2025
Valid until
9 September 2028
Scope

Resale of cybersecurity services and consulting.

What These Standards Mean

Three internationally recognised standards, three layers of assurance.

ISO 9001:2015

Quality Management

Defines the requirements for a Quality Management System. Verifies that Orizon's service delivery, customer focus and continual-improvement processes are documented, measured and audited.

ISO/IEC 27001:2022

Information Security Management

The international standard for an Information Security Management System (ISMS). Covers risk treatment, access control, cryptography, incident response and supplier security across 93 controls in Annex A.

ISO/IEC 27017:2015

Cloud Services Security

A code of practice that extends ISO 27001 with controls specific to cloud services — shared responsibility, virtualisation security, segregation of customer data and cloud-aware administrative operations.

How Independent Verification Works

Certificates are not self-declared. They are earned and re-earned.

Accredited body

AXE REGISTER is accredited under DA and signs the IAF MLA, so our certificates are recognised across 80+ accreditation bodies worldwide.

Annual surveillance

Each certificate is subject to yearly on-site surveillance audits. Findings are tracked, remediated and re-verified.

Three-year recertification

A full management-system recertification audit is performed every three years before any certificate can be renewed.

Verifiable certificates

Every certificate above carries a unique number you can verify directly with AXE REGISTER at [email protected].

Need our certificates for procurement?

Download the official PDFs above or contact our security team for a Data Processing Agreement, security questionnaire response or audit evidence.