Certifications & Compliance
At LANAIR, security is a ‘Culture’, not a product or SKU.
Cybersecurity goes beyond investing in technology and security tools. We focus on making our entire Team the first line of defense through training and guidance on how to avoid different types of cyber threats and data breaches.
Our engineering team consists of some of highest qualified security and data protection solutions experts. They spend 7/24/365 developing customized security-focused ecosystems for our clients while managing and monitoring security threats before they even happen.
LANAIR has a portfolio of compliant integrated security solutions that includes but not limited to:
- Complete Endpoint Security
- Threat and Vulnerability Management
- Security Information and Event Management
- Data Protection, Business Continuity and Disaster Recovery
- Cloud Security
- AirGap Technology
- Incident Response
- Next-Generation Secured Hardware Solutions
Our strong security culture has created a stronger trust and loyalty among our client base. Now more than ever we hope businesses take advantage of our expertise to make IT operation decisions that reduce and mitigate risk.
Compliance and Certification aligned with Industry Best Practices
LANAIR Technology Group adheres to compliance via numerous security and industry regulations, including those shown below:
SOC 2®
Report on Controls at a Service Organization Relevant to Security, Availability, Processing Integrity, Confidentiality or Privacy These reports are intended to meet the needs of a broad range of users that need detailed information and assurance about the controls at a service organization relevant to security, availability, and processing integrity of the systems the service organization uses to process users’ data and the confidentiality and privacy of the information processed by these systems. These reports can play an important role in:
- Oversight of the organization
- Vendor management programs
- Internal corporate governance and risk management processes
- Regulatory oversight
Similar to a SOC 1 report, there are two types of reports: A type 2 report on management’s description of a service organization’s system and the suitability of the design and operating effectiveness of controls; and a type 1 report on management’s description of a service organization’s system and the suitability of the design of controls. Use of these reports are restricted.
NIST
LANAIR adheres to the NIST Cybersecurity Framework from The National Institute of Standards and Technology (NIST). The NIST Cybersecurity Framework was developed in response to U.S. Executive Order 13636. Created through collaboration between government and the private sector, this framework uses a common language to address and manage cybersecurity risk in a cost-effective way based on business needs without placing additional regulatory requirements on businesses. Our alignment of security controls with the NIST Cybersecurity Framework’s Core is regularly tested as part of periodic SOC 2 Type 2 report.