Security & Compliance

Global Risk Dashboard | GRiD

Protecting your data is fundamental to GRiD

Verisk Maplecroft has completed a SOC 2® Type 1 examination for its GRiD platform and is Cyber Essentials certified, demonstrating our commitment to maintaining robust security controls and safeguarding client data.

We take a structured and independent approach to security and compliance. Our controls, processes, and governance are designed to protect the confidentiality and integrity of data managed within the GRiD platform.

Our approach is supported by recognised independent assessments and certifications.

AICPA - SOC logo Cyber Essentials logo
 

We have completed a SOC 2® Type 1 examination covering the GRiD platform. This independent assessment was conducted by an external auditor in accordance with established AICPA standards.

The examination evaluates whether controls relevant to security and confidentiality are suitably designed at a point in time.

Key points

  Independent third-party assessment
  Focused on security and data protection controls
  Aligned to industry-recognised Trust Services Criteria
  Applicable to the GRiD platform and supporting systems

SOC 2® reports are restricted-use documents and are available to customers and partners on request, subject to appropriate confidentiality arrangements.

 

We are Cyber Essentials certified, demonstrating that we meet UK government-backed standards for protection against common cyber threats.

This certification underlines our commitment to maintaining a strong baseline of security controls and supports our ability to meet client and regulatory requirements, including UK public sector engagements.

Key benefits

  Protection against common cyber risks
  Recognised UK government-backed scheme
  Supports supply chain assurance requirements

Continuous Improvement

Security is an ongoing priority. Maplecroft continues to enhance its security posture and maintain its compliance framework in line with evolving risks and best practices.

This includes:

  Maintaining SOC 2 controls
  Renewing Cyber Essentials certification
  Continuing investment in security governance and technology
data-graphic-improvement