Home / Security & Compliance

Your Data. Our Priority.

We are certified in:

  • ISMS (ISO/IEC 27001:2022) – Information Security Management System
  • PIMS (ISO/IEC 27701:2019) – Privacy Information Management System

These certifications demonstrate our commitment to maintaining robust information security and privacy management practices.

We adhere to:

  • GDPR (General Data Protection Regulation)
  • PDPA Sri Lanka (Personal Data Protection Act)

This ensures that all personal and sensitive data handled within our systems meet global and local compliance standards.

We apply a privacy-by-design and security-by-default approach. All data is encrypted, securely stored, and accessible only to authorized personnel. Regular audits, threat assessments, and vulnerability testing ensure continuous protection of client information.

We perform periodic internal audits and an annual external audit conducted by a recognized audit body (BV) to maintain compliance and strengthen our security posture.

All collaborations occur within secure communication channels, governed by non-disclosure agreements (NDAs) and data protection clauses. We ensure any third-party tools or integrations also meet our strict compliance and security standards.

Yes. Our experts can guide clients through establishing data protection frameworks and compliance processes that align with ISO, GDPR, and PDPA requirements — ensuring both security and operational confidence.

For any inquiries related to information security or data privacy, you can reach out to:

  • Information Security Officer: iso@digiratina.com
  • Data Protection Officer: dpo@digiratina.com