News
Boris Szelcsanyi
·

OnDuty AI has started the ISO 27001 certification process and is currently preparing for its first audit – a key step for customers operating in highly regulated 24/7 environments.
ISO 27001 is the international standard for information security management systems (ISMS), defining requirements for establishing, implementing, maintaining and continuously improving information security.
The OnDuty AI platform processes sensitive data such as duty rosters, time tracking, employee records, payroll data and location and GPS information, all of which must remain protected, available and intact.
The current state of OnDuty AI's security and compliance measures can be viewed at any time via the Trust Center (trust.onduty.tech).
Onboarding and a clearly structured kick-off into the certification process were carried out with CompAI, and further compliance standards are already planned.
We build software for 24/7 operating environments where availability, security, and compliance are business-critical.
For the security and guarding services industry in particular, we create digital solutions to manage risk, structure operations, and reliably meet regulatory requirements.
In this environment, certification isn't optional — it's an obligation.
That's why we've started the ISO 27001 certification process and are currently preparing for our first audit.
Why ISO 27001 matters for security companies
ISO 27001 is the international standard for information security management systems (ISMS). It defines requirements for establishing, implementing, maintaining, and continually improving an ISMS.
For security companies, this standard is especially relevant:
Sensitive personnel data – security companies process personal data of their staff and clients every day
Scheduling and location data – information about shifts, sites, and check-ins is business-critical
Contractual requirements – more and more clients demand demonstrable information security from their providers
Regulatory compliance – the security industry is subject to strict, continually tightening requirements
A certified ISMS under ISO 27001 builds client trust, reduces risk, and forms the basis for long-term business relationships.
ISO 27001 certification at OnDuty AI
As a provider of workforce management software for the security industry, we carry a special responsibility. Our platform processes:
Schedules and shift data
Time tracking and check-in logs
Employee data and qualifications
Payroll data
Location and GPS information
This data must be protected, available, and intact – the three pillars of information security.
With ISO 27001 certification, we're implementing a systematic framework that not only meets these requirements but continually improves on them.
"Our clients operate in highly regulated 24/7 environments. Information security and compliance aren't abstract concepts for them — they're part of daily operations. The ISO 27001 process is therefore a logical and necessary step for us to live up to that responsibility." — Faik Hida, CEO of OnDuty AI
What does ISO 27001 mean for our clients?
Certification brings concrete benefits for every OnDuty AI user:
Demonstrable security You can prove to your own clients that you work with a certified provider.
Risk reduction Systematic processes reduce the risk of data loss, outages, and security incidents.
Compliance support Certification makes your own compliance with data protection and industry regulations easier.
Continuous improvement ISO 27001 requires regular audits and improvements – you benefit from a system that keeps evolving.
Thanks to CompAI
Special thanks to CompAI for the exceptionally smooth onboarding and a clearly structured kick-off into the certification process.
CompAI helped us tackle the often complex certification process efficiently and systematically – without unnecessary overhead.
Current status of certification
The process is already underway. We have:
Implemented the ISMS framework
Documented policies and processes
Conducted risk assessments
Implemented technical and organizational measures
You can view the current status of our security and compliance measures anytime in our Trust Center.
Looking ahead: further compliance standards
We look forward to passing the audit and achieving ISO 27001 certification.
But our journey doesn't end there. We plan to pursue additional relevant standards and certifications to give our clients in the security industry the best possible foundation for their own compliance.
Information security isn't a project – it's a continuous process. And we're ready to keep walking that path with determination.