We’re proud to share that our Information Security Management System (ISMS), is certified by INTERCERT to ISO/IEC 27001:2022.

This is an important step for us and for the advisers who rely on us to manage sensitive client information.

ISO/IEC 27001:2022 is an internationally recognised standard for information security. It sets out how organisations manage data, reduce risk, and maintain secure systems and processes.

You can view our certificate here and learn more about ISO/IEC 27001:2022 here.

What This Means

Although we already had strong security practices in place, to achieve certification we needed to further formalise our existing controls, complete a full risk assessment, and undergo an independent external audit. This audit confirmed that our controls and processes are working as intended.

As part of the process, we also strengthened and documented how we manage security across the business, including:

  • Security policies and procedures
  • Risk assessment and mitigation
  • Access controls for systems and data
  • Regular monitoring, testing, and reviews
  • Staff training and awareness

Why It Matters for Advisers

Financial advisers deal with highly sensitive client information. Keeping that data secure is critical.

Our ISO/IEC 27001:2022 certification provides independent assurance that we have processes in place to:

  • Store and manage data securely
  • Identify and address security risks
  • Respond to incidents appropriately
  • Regularly review and improve controls

For smaller advice businesses, this is particularly relevant. Building and maintaining this level of security internally can be difficult and expensive. Working with an ISO/IEC 27001:2022 certified provider helps reduce that burden.

Supporting Compliance and Due Diligence

For advisers, working with an ISO/IEC 27001:2022 certified provider can provide independently verified evidence of information security practices, which may be useful during due diligence and compliance assessments.

Built for the Long Term

As advice businesses grow, so does the volume and complexity of client data. Security needs to scale with that growth. ISO/IEC 27001:2022 supports this by providing a framework that evolves over time.

This gives advisers confidence that the systems they rely on today will continue to meet expectations in the future.

Ongoing Commitment

ISO/IEC 27001:2022 requires continuous improvement, regular audits, and ongoing oversight. We will continue to review and strengthen our controls as security risks evolve and our solutions grow.

You can find more information about our Data Security controls here or if you have further questions, get in touch with our team at contact@omnimax.co.nz

Request a Free Demo

Save time with one of our Pre-built Solutions

Follow Us