Compliance frameworks, security audits, and quality certifications this company maintains.
OpenText maintains SOC 2 Type II attestation across its cloud hosting infrastructure and SaaS platforms including Content Cloud and Business Network Cloud, providing enterprise customers in financial services and healthcare assurance that OpenText's security, availability, and confidentiality controls are continuously effective.
OpenText holds ISO 27001 certification for its information security management system, covering the development and operation of OpenText cloud platforms including Content Cloud, Cybersecurity Cloud, and Business Network Cloud, demonstrating systematic security controls across OpenText's global data centres.
OpenText Content Cloud holds FedRAMP Moderate authorization, enabling US federal government agencies to deploy OpenText's document management and records management capabilities in compliance with FISMA requirements for cloud-hosted federal information systems.
OpenText complies with the EU General Data Protection Regulation across its cloud platforms and professional services operations, implementing data processing agreements, privacy by design principles, and data residency options that allow European customers to keep their OpenText-managed content within EU boundaries.
As a Canadian company, OpenText complies with the Personal Information Protection and Electronic Documents Act, governing how OpenText collects and processes personal data from its Canadian customers and employees across its Waterloo headquarters and Canadian cloud infrastructure.
OpenText holds ISO 9001:2015 certification for its software development and professional services quality management system, ensuring consistent delivery processes for Content Cloud implementations and Business Network onboarding projects meet customer-defined quality standards.
OpenText Business Network Cloud complies with PCI DSS standards for handling payment card transaction data exchanged between retailers, payment processors, and financial institutions over its EDI and B2B integration network, protecting sensitive financial transaction data in transit and at rest.
OpenText Content Cloud and Business Network Cloud support HIPAA-compliant workflows for healthcare customers, providing Business Associate Agreement capabilities, audit logging, and encrypted data handling required for managing protected health information in clinical and administrative document workflows.
Security
Common Criteria EAL2+
CertifiedOpenText EnCase digital forensics platform holds Common Criteria EAL2+ certification, providing law enforcement agencies, government investigators, and enterprise legal teams assurance that OpenText's forensic acquisition and analysis tools meet internationally recognised security evaluation standards.
OpenText holds ISO 14001 Environmental Management System certification, supporting its commitment to reduce energy consumption across its global data centres, minimise carbon emissions from OpenText cloud infrastructure, and comply with environmental regulations in Canada, the United States, and the European Union.