Compliance frameworks, security audits, and quality certifications this company maintains.
Ivanti's cloud platform including Ivanti Neurons, ITSM cloud, and Connect Secure undergoes annual SOC 2 Type II audits providing enterprise customers assurance of security, availability, and confidentiality controls across Ivanti's IT management and secure access services.
Ivanti maintains ISO 27001 certification for its information security management system across its global cloud operations, demonstrating systematic management of security risks affecting its endpoint management, ITSM, and secure access platform infrastructure.
Regulatory
FedRAMP Moderate
CertifiedIvanti Neurons for ITSM and select Ivanti cloud services have achieved FedRAMP Moderate authorization, enabling U.S. federal agencies to use Ivanti IT management and service management platforms in compliance with federal security requirements.
Ivanti Connect Secure and Ivanti Policy Secure implement FIPS 140-2 validated cryptographic modules required by U.S. federal agencies and regulated enterprises deploying Ivanti VPN and zero trust network access in security-sensitive environments.
Ivanti's cloud platforms are designed to support enterprise customer GDPR compliance, offering EU data residency options, data processing agreements, and privacy controls for endpoint telemetry and IT service management data processed on behalf of European enterprise customers.
Ivanti supports CCPA compliance for its California enterprise customers through privacy controls on Ivanti Neurons and ITSM platform data, providing data subject access and deletion capabilities for personal information processed in Ivanti cloud services.
Security
Common Criteria EAL2+
CertifiedIvanti Connect Secure VPN has achieved Common Criteria EAL2+ certification, meeting international security standards for network access control products deployed in government, defense, and critical infrastructure environments.
Ivanti's endpoint management and ITSM solutions support HIPAA compliance for healthcare enterprise customers by enabling secure management of clinical endpoints, enforcing mobile device encryption, and maintaining audit trails of access to ePHI systems.
Ivanti's patch management and endpoint security capabilities support PCI DSS compliance for retail and financial services customers by automating patch deployment for cardholder data environment systems and enforcing security configurations.
Quality
ITSM Best Practice (ITIL 4)
CertifiedIvanti Neurons for ITSM and Cherwell ITSM are certified for ITIL 4 practice alignment, enabling enterprise IT teams to implement incident, change, problem, and service request management workflows following current ITIL best practice frameworks.