Compliance frameworks, security audits, and quality certifications this company maintains.
Leidos holds CMMI Development Level 3 appraisal across its systems engineering and software delivery practices, meeting DoD acquisition requirements for disciplined and defined processes on major defense programs including C5ISR integration and MHS GENESIS.
Leidos operates FedRAMP High authorized cloud environments supporting the VA VAEC program, MHS GENESIS, and DoD civilian cloud migrations — enabling processing of the most sensitive unclassified government data in Leidos-managed cloud infrastructure.
Leidos's information security management system is certified to ISO 27001:2022, providing government clients independent assurance that Leidos controls protecting sensitive program information meet internationally recognized security management standards.
Leidos maintains ISO 9001:2015 quality management certification across its major service delivery operations, supporting continuous improvement in systems integration, software development, and managed services for DoD and civilian agency clients.
Leidos maintains HIPAA compliance across its health IT operations supporting VA, DHA, and CMS programs. MHS GENESIS and VA VAEC environments are designed to protect Protected Health Information (PHI) for millions of military and veteran beneficiaries.
Regulatory
DoD CMMC Level 3
CompliantLeidos meets CMMC Level 3 requirements for protecting Controlled Unclassified Information (CUI), enabling continued performance on DoD contracts requiring advanced cybersecurity practices across Leidos's classified and unclassified program delivery environments.
Regulatory
ITAR Registered
CompliantLeidos is registered with DDTC under ITAR, required for its defense systems engineering, C5ISR integration, Dynetics hypersonics research, and Gibbs & Cox naval architecture work involving defense articles and technical data on U.S. military programs.
Leidos complies with NIST SP 800-171 across its program delivery and corporate IT environments, protecting Controlled Unclassified Information as required by DoD contracts and in preparation for CMMC Level 3 formal assessment.
Leidos's managed IT service operations are SOC 2 Type II certified, providing government clients independent audit assurance of security, availability, and confidentiality controls in Leidos-operated data centers and cloud environments.
Leidos holds ISO 45001:2018 occupational health and safety certification, particularly important for Dynetics's hypersonics test facilities, Gibbs & Cox shipyard engineering environments, and Leidos laboratory operations at national research facilities.