Security & Compliance
Information Security Policy Statement
MASS Analytics is committed to safeguarding all its information assets, including the information entrusted to us by our clients, against any loss of confidentiality, integrity or availability that could affect our operations, our obligations or our reputation.
MASS Analytics is certified to ISO/IEC 27001:2022 and will maintain and continually improve the effectiveness of its Information Security Management System (ISMS). We commit to satisfying all applicable legal, regulatory and contractual requirements, including the protection of personal data.
Information Security Objectives
- Ensure confidentiality, integrity and availability of the information assets.
- Ensure compliance with applicable laws, regulations and contractual requirements.
- Implement a risk management framework to identify, assess, and mitigate information security risks effectively.
- Promote information security awareness and competence among employees and stakeholders.
- Incorporate security controls across the software development lifecycle to ensure secure products and services.
- Ensure privacy and protection of personally identifiable information (PII).
- Maintain traceability of information security events.
- Anticipate and prevent cyberattacks and incidents.
- Ensure cyber-resilience of the information systems.
- Protect customer and internal data in accordance with contractual and regulatory requirements.
- Ensure that information systems remain available to authorized users, minimizing operational disruptions.
- Govern the secure use of cloud and artificial intelligence services.
Leadership and Continual Improvement
MASS Analytics’ top management demonstrates leadership and commitment by:
- Integrating information security into core business strategy and governance.
- Supporting the allocation of appropriate resources.
- Regularly reviewing the effectiveness of the ISMS and its objectives.
- Promoting a culture of security and continual improvement.
This statement covers all MASS Analytics activities and processes, at our United Kingdom headquarters and across all legal entities and branches within the ISMS scope. It applies to everyone with access to our information assets, is reviewed at least annually, and is approved and signed by our Chief Executive Officer.
Version 4.0 · Approved 12 August 2026
Our Certifications
ISO 27001:2022
We follow strict international standards to keep your data safe and secure.
EcoVadis Rated
Our EcoVadis rating reflects our ongoing commitment to responsible, sustainable, and ethical business practices.
