Certifications and qualifications

Recognized standards,
measurable reliability.

We operate according to elite security standards, essential for the large-enterprise, insurance and public-administration markets. Our certifications are verified every year by independent bodies: here you will find the full list, with the scope of each one.

Why it matters

Two pillars of trust.

National accreditations and European compliance: the foundation on which we build services for public administration, healthcare and large enterprises.

Critical infrastructure

Strategic accreditations

ACN qualification and compliance with the NIS2 and eIDAS directives. Quality and Safety is a partner for critical trust services and sensitive State infrastructure.

  • ACN
  • NIS2
  • eIDAS

Regulatory framework

European digital sovereignty

We guarantee preservation, security, traceability and supply-chain control according to EU and Italian regulations, with AgID guidelines and ACN cloud qualification for public administration and healthcare.

  • GDPR
  • eIDAS
  • NIS2
  • DGA
  • Data Act
  • AI Act
  • AgID
  • ACN
  • IQNet
    The International Certification Network

    IQNet

    IQNet Recognition

    An international network that recognises and harmonises its members' certifications in over 150 countries.

    Scope
    International recognition of certifications

    IQNet is the global association of the leading certification bodies. IQNet recognition ensures that the certifications issued to Quality and Safety by accredited partners are accepted internationally without the need for further audits.

  • AENOR — Quality Management
    AENOR

    AENOR — Quality Management

    ISO 9001

    A quality management system compliant with the most widely adopted international standards.

    Scope
    Design, development and delivery of software services and digital preservation

    The ISO 9001 certification attests that Quality and Safety’s processes — from requirements gathering through to delivery and support — follow a measurable management system geared towards continuous improvement and customer satisfaction.

  • AENOR — Information Security
    AENOR

    AENOR — Information Security

    ISO/IEC 27001

    An information security management system with technical, organisational and physical controls.

    Scope
    Infrastructure, applications, compliant digital preservation and cloud services

    ISO/IEC 27001 is the reference standard for safeguarding the confidentiality, integrity and availability of information. We apply a set of ISMS controls covering access management, encryption, incident response, business continuity and supplier management.

  • AENOR — Cloud Security
    AENOR

    AENOR — Cloud Security

    ISO/IEC 27017

    Security controls specific to cloud services, extending ISO/IEC 27001 to multi-tenant and virtualised environments.

    Scope
    Cloud services, virtualised infrastructure and digital preservation

    ISO/IEC 27017 defines additional guidelines and controls for information security in cloud environments, covering aspects such as the segregation of virtual resources, the management of shared responsibilities between provider and customer, and the protection of administration interfaces.

  • AENOR — Personal data protection in the cloud
    AENOR

    AENOR — Personal data protection in the cloud

    ISO/IEC 27018

    Protection of personal data (PII) in public cloud services, with privacy-specific controls.

    Scope
    Processing and protection of PII on cloud infrastructure

    ISO/IEC 27018 is the reference standard for protecting personally identifiable information (PII) in public clouds. It ensures transparency in data processing, limits on secondary use, breach notification and effective control on the part of the data controller.

  • AgID
    Agenzia per l'Italia Digitale

    AgID

    Conservatore accreditato / Fornitore qualificato

    Quality and Safety appears in the official AgID list of preservation providers registered in the Marketplace of preservation services.

    Scope
    Compliant digital preservation and digital services for the Public Administration

    Accreditation is not merely an administrative requirement: it enables compliant digital preservation, strengthens trust within the Public Administration and for all regulated parties, and creates a barrier to entry founded on verified organisational, technological and procedural safeguards.

  • ACN
    Agenzia per la Cybersicurezza Nazionale

    ACN

    Qualificazione servizi cloud per la PA

    ACN qualification/compliance for public administration cloud services, with verification of conformity to regulatory requirements and 36-month validity.

    Scope
    Qualified cloud for the Public Administration

    The qualification issued by the Agenzia per la Cybersicurezza Nazionale, referenced by the official ACN procedure, involves verification of conformity to regulatory requirements and a qualification validity of 36 months. This safeguard strengthens the company’s position as a qualified supplier for public and regulated environments, reducing operational risk and the time required to access tenders and critical projects.

  • ANORC
    Associazione Nazionale Operatori e Responsabili della Conservazione dei Contenuti digitali

    ANORC

    Socio

    Membership of the leading Italian association for digital preservation operators and managers.

    Scope
    Advocacy, standards and best practices in digital preservation

    As an ANORC member, we actively contribute to the development of standards and best practices in digital preservation in Italy, engaging with institutions, providers and preservation managers across the country.

Documentation

Compliance documents.

Certificates and questionnaires available for direct download.

Do you need the official certification documents?

On request we provide certificates, management-system manuals and the SoA (Statement of Applicability) updated to the latest audit.