Skip to main content
Home
  • AI Mode
  • Supply Chain Orchestration
    fast
    Supply Chain Orchestration
    • Life Sciences Company
    • Direct Material Supplier
    • Contract Manufacturer
    • Third Party Logistics
    • Wholesale Distributor
    • Healthcare Provider
    • Retail Pharmacy
  • Network
  • Products
    fast
    Products
    • Multienterprise Information Network Tower (MINT)
    • Process Orchestration for Empowered Teams (POET)
    • Track-and-Trace
  • Resources
    fast
    Resources
    • Resource Center
    • TraceLink University
    • Partners
    • Community
    • Events
  • About
    fast
    About
    • Our Story
    • Newsroom
    • Culture and Careers
    • Leadership
    • Our Values
    • Corporate Social Responsibility
    • Contact Sales
  • Log In
    • Tracelink Classic
      TraceLink Classic app.tracelink.com
      Redirect
    • Opus Platform
      Opus Platform opus.tracelink.com
      Redirect
Log In
  • Tracelink Classic
    TraceLink Classic app.tracelink.com
    Redirect
  • Opus Platform
    Opus Platform opus.tracelink.com
    Redirect
Newsroom

Breadcrumb

  1. Home
  2. About
  3. Newsroom

TraceLink Successfully Completes Industry-Leading Audits: ISO/IEC 27001:2022, ISO/IEC 27017:2015, SOC 2/ISAE 3000 Type II, and CyberVadis

banner-image
  • Download PDF
  • Share
    • LinkedIn
    • Facebook
    • Mail
    • Twitter

Table of contents

BOSTON, Massachusetts — December 9, 2024 — TraceLink, the largest end-to-end digital network platform for intelligent orchestration of the supply chain, has reinforced its leadership in cybersecurity preparedness by completing independent audits for compliance with the International Organization for Standardization’s (ISO) / International Electrotechnical Commission (IEC) 27001:2022 and 27017:2015, as well as Service Organization Controls (SOC) 2 / International Standard on Assurance Engagements (ISAE) 3000 Type II for Security, Availability, and Confidentiality. Validated by independent compliance assessor A-LIGN, these achievements demonstrate TraceLink’s world-class security practices and unwavering commitment to protecting customer data, confirming that its information security management system, certified since 2018, complies with the latest version of ISO/IEC 27001 and maintains compliance with cloud-centric controls. Adding to this achievement, TraceLink earned a top-tier "mature" rating of 946/1000 in the CyberVadis Risk Management Assessment, underscoring the company’s proactive and advanced approach to cybersecurity.

These industry-leading compliance benchmarks assure customers that their supply chain data is safeguarded by the highest international standards. By maintaining robust security measures across its OPUS (Orchestration Platform for Universal Solutions) and cloud environments, TraceLink enables customers and their supply chain trading partners to focus on driving business growth with the confidence that their information is secure, compliant, and protected from evolving cyber threats.

"These certifications reaffirm our commitment to protecting customer data with the highest standards of privacy, governance, and risk management," said Shabbir Dahod, President and CEO of TraceLink. “Independent validation that our rigorous security program covers even our newest OPUS platform and offerings provides customers with the transparency needed for confidence and trust.” 

ISO/IEC 27001:2022 Certification Inclusive of ISO/IEC 27017:2015
ISO/IEC 27001 is the world’s best-known standard for information security management systems (ISMS). Certification demonstrates compliance with the requirements, principles, and best practices associated with the standard across a broad set of control domains further defined in ISO/IEC 27002:2022. ISO/IEC 27017:2015 provides additional guidance for companies with respect to cloud computing, expanding on the guidance provided in ISO/IEC 27002 and defining additional controls that specifically relate to cloud services. These certifications assure customers that their information is securely managed and controlled across all TraceLink services.

SOC 2 / ISAE 3000 Type II Attestation
Established by the American Institute of Certified Public Accountants (AICPA), the SOC 2 examination ensures organizations protect customer assets by reviewing their infrastructure, software, policies, and operations. Recognized globally, SOC 2 affirms adherence to rigorous security standards. Additional controls were included to ensure coverage with the ISAE 3000 framework for our international customers. This attestation demonstrates TraceLink’s ongoing commitment to security, availability, and confidentiality, ensuring customers’ data is protected within a secure, reliable, and compliant platform.

CyberVadis Certificate of Security Assessment
CyberVadis is a trusted platform for third-party cybersecurity risk assessments, helping global companies mitigate supply chain cyber risks. Its scalable solution evaluates vendor cybersecurity maturity using a methodology based on international standards and frameworks. This certification underscores TraceLink’s proactive approach to cybersecurity, assuring customers of resilient and secure supply chain operations.

“The successful completion of these industry-leading audits demonstrates TraceLink’s ongoing commitment to ensuring the security of our customers' data and their critical business processes," said Dan Nelson, CISO of TraceLink. “These audits serve as an essential external benchmark, validating the maturity of our security program and adherence to widely recognized frameworks.”

Earning such certifications and attestations positions TraceLink as a trusted partner in the supply chain industry, ensuring that organizations can rely on TraceLink for secure and compliant solutions to manage and orchestrate their supply chain networks effectively.

Learn more about TraceLink’s security certifications and attestations. 

Table of contents

Related Content
use cases
TraceLink's Magnum Release of its OPUS Platform Will Revolutionize Supply Chain Management by Enabling All Businesses to Digitalize their End-to-End Supply Networks
TraceLink, the largest end-to-end digital network platform for intelligent orchestration of the life sciences and healthcare supply chain, has announced the Magnum release of its flagship platform, OPUS, the only no-code network digitalization platform designed to democratize access to end-to-end supply chain integration and orchestration.
View More
Supply Chain Issues
TraceLink Becomes First Solution Provider to Secure All 16 GS1 US Conformance Trustmarks for EPCIS File Support
TraceLink announces it has become the first and only solution provider to secure all 16 GS1 US Conformance Trustmarks for EPCIS file support.
View More

Cookie Settings

When you visit any website, it may store or retrieve information on your browser, mostly in the form of cookies or similar tracking technologies. Please see below for an overview of the categories of cookies and similar technologies used on this site. You can allow or deny some of all of them, except Strictly Necessary Cookies which are required to provide the site to you. However, blocking some types of cookies may impact your experience of the site and services we are able to offer.

Please see our Cookie Policy for more details, including a list of the cookies we use. You can change your consent options at any time by following the “Cookie Settings” link in the Cookie Policy.
'Strictly Necessary' cookies let you move around the Site and use essential features like secure areas, shopping baskets and online billing. Without these cookies you would not be able to navigate between pages or use certain vital features of our Site, so we do not require your consent for their use. These cookies don't gather any information about you that could be used for marketing or remembering where you've been on the internet. For example, we use these Strictly Necessary cookies to identify you as being logged in to the Site. You can set your browser to block or alert you about these cookies, but if you do so, some parts of the Site will not work.
'Performance' cookies collect information about how you use the Site, such as which pages you visit, the time spent on the Site and if you experience any errors. We use performance cookies to provide aggregated statistics on how the Site is used and help us improve the Site including by measuring any errors that occur.
'Functional' cookies are used to provide services or to remember settings to improve your visit. We use 'Functionality' cookies to remember your settings and choices and show you when you're logged in to the Site.
‘Targeting' cookies are linked to services provided by third parties, such as 'Like' buttons and 'Share' buttons. The third party provides these services in return for recognizing that you have visited the Site. We also use 'Targeting' cookies to gather information that could be used to display content that we think may interest you.

Footer

  • Quick Links
    Get a Demo
    TraceLink Network Directory
    The Network
    OPUS Platform
    Technical Support
    Open Jobs
    API: Terms of Use
  • Products
    Multienterprise Information Network Tower
    U.S. DSCSA Compliance
    Targeted Recalls
    Process Orchestration for Empowered Teams
    Serialization
    Global Compliance
  • Resources
    Resource Center
    Events
    TraceLink University
    Partners
    Community
  • About TraceLink
    Our Story
    Newsroom
    Culture & Careers
    Leadership
    Our Values
    Corporate Social Responsibility
  • Hot Topics
    Transaction Integration
    Supply Chain Visibility
    DSCSA Compliance
    Process Orchestration
    Kazakhstan Compliance for Pharmaceuticals
    Kyrgyzstan Compliance for Pharmaceuticals
Follow Us on Social
Facebook
Linkedin
X
Legal & Trust.
© TraceLink Inc. 2009-2026 All Rights Reserved
Contact Us Today
Contact us today to begin your journey toward agentic supply chain orchestration — digitalize your end-to-end supply chain with intelligence, flexibility, and collaborative orchestration.
Contact Us
Stay Up-to-Date
Subscribe to receive industry insights and stay at the forefront of evolving trends.
Subscribe