TeamSyncTeamSync
Why TeamSync
Intelligent RepositoryDocuTalkSemantic SearchAgentic WorkflowCLMeSignatureseDiscoveryCompliance Audit TrailSummarisationSecurity & DeploymentOCR + ICRRBACView all capabilities →
Finance & BankingHealthcare & HIPAAEnergy & UtilitiesAccounting & TaxHR & Human ResourcesWealth ManagementInsurance
CompliancePricing
BlogsFAQs
Contact
Intelligent RepositoryThe platformDocuTalkAI on your corpusSemantic SearchHybrid retrievalAgentic WorkflowAI that actsCLMNative, not bolted-oneSignaturesSES, AdES, QESeDiscoveryHold at the sourceCompliance Audit TrailWorkflow & auditSummarisationCitation-groundedSecurity & DeploymentDeploy your wayOCR + ICRCapture, typedRBACThe control surface
View all capabilities
Finance & BankingPCI, SOX & AML-ready document workflows for banksHealthcare & HIPAAHIPAA-first records, clinical workflows, audit trailsEnergy & UtilitiesPermits, safety & environmental compliance at scaleAccounting & TaxWorkpapers, client collection & engagement workflowsHR & Human ResourcesEmployee records, onboarding & policy complianceWealth ManagementRIA compliance, KYC onboarding & client recordsInsuranceClaims, policy admin & examination readiness
View all industries
BlogsPractical writing on regulated content and AIFAQsCommon questions on deployment, security & compliance
View all resources
TeamSyncTeamSync

The regulated content + AI platform for financial services, healthcare and life sciences, public sector, legal, energy, and AEC.

Don't Miss an Update!

Subscribe for Free Guides & Industry Insights.

Platform
  • Overview
  • TeamSync
  • AccessArc
  • Architecture
  • Security
  • Integrations
Capabilities
  • All Capabilities
  • Electronic Signatures
  • DocuTalk AI
  • Audit Trail
  • Workflow Automation
  • Intelligent Repository
  • E-Discovery
  • Contract Management
Industries
  • All Industries
  • Financial Services
  • Healthcare
  • Legal & Professional
  • Energy
  • Public Sector
  • Manufacturing
  • Real Estate
Compliance
  • All Compliance
  • HIPAA
  • SOC 2
  • ISO 27001
  • FedRAMP High
  • GDPR Art. 17
  • eIDAS QES
  • FDA 21 CFR Pt. 11
Resources
  • All Resources
  • Blog
  • Guides
  • Webinars
  • Customer Stories
  • Trust Center
  • Glossary
  • FAQs
Company
  • About
  • Leadership
  • Careers
  • Press
  • Investors
  • Contact
  • Pricing
  • Docs
TermsPrivacyDPASub-processorsCookie PolicySitemap
© 2026 TeamSync. All rights reserved.TeamSync is a product of AngelBot AI.
Follow us

Compliance

  • Compliance overlays
  • CJIS Security Policy v5.9+ — Law-enforcement content controls
  • DORA — Digital Operational Resilience Act for EU financial entities
  • EU AI Act — high-risk system documentation, generated from the chain.
  • FDA 21 CFR Part 11 — electronic records and signatures the inspector accepts.
  • FINRA 17a-4 + SEC 17a-4 — broker-dealer recordkeeping the regulator can verify.
  • FedRAMP High — NIST 800-53 Rev 5 baseline for federal regulated workloads
  • GDPR Article 17 — right to erasure proven mathematically.
  • HIPAA + HITECH — PHI handling, controls, and breach posture
  • ISO/IEC 27001:2022 — Information Security Management System certified
  • SOC 2 Type II — Trust services criteria attested annually
  • SOX 404 — ICFR document control with cryptographic audit
  • eIDAS Qualified Electronic Signature — QES, AdES, and SES handled per the regulation
Home›Compliance›Iso 27001
compliance

ISO/IEC 27001:2022 — ISMS certified.

ISO/IEC 27001:2022 is the international standard for an Information Security Management System (ISMS). The 2022 revision restructured Annex A to 93 controls in 4 themes (organisational, people, physical, technological), aligned with ISO/IEC 27002:2022. TeamSync holds active 27001:2022 certification with ISO 27017 (cloud security) and ISO 27018 (personal data in the cloud) extensions.

Talk to a security solutions engineer


What ISO 27001 requires.

Clauses 4-10 — context, leadership, planning, support, operation, performance evaluation, improvement.

Annex A (2022 revision) — 93 controls in 4 themes: - A.5 Organisational (37 controls) - A.6 People (8 controls) - A.7 Physical (14 controls) - A.8 Technological (34 controls)

Statement of Applicability (SoA) — declared inclusion / exclusion per control with justification.

Surveillance + recertification — annual surveillance + 3-year recertification by accredited certification body.


How TeamSync addresses ISO 27001.

1. Certified ISMS scope.

ISMS scope covers TeamSync platform, supporting infrastructure, supporting personnel; certificate available per request.

2. Annex A 93 controls implemented + evidenced.

Per-control evidence maintained; SoA published; control-design + operating-effectiveness evidence available.

3. ISO 27017 + ISO 27018 extensions.

Cloud-specific (27017) + personal-data cloud (27018) extensions certified.

4. Continuous improvement evidence.

Internal audit, management review, non-conformity tracking, corrective action.

5. Customer-facing artefacts.

Certificate; SoA; control summary; sub-processor list; security whitepaper.


What customers see.

AspectTeamSync coverage
ISO 27001:2022 certificationActive
ISO 27017 cloud extensionCertified
ISO 27018 personal-data extensionCertified
Annex A 93 controlsImplemented
SoAPublished
Sub-processor listMaintained
Security whitepaperAvailable

Adjacent rules + frameworks served.

  • ISO 27701 (privacy information management) — extension
  • ISO 22301 (business continuity) — adjacent certification
  • ISO 42001 (AI management system) — emerging extension

Personas this overlay serves.

  • CISO (cross-vertical)

Related capabilities

  • Intelligent Repository, RBAC + Backup, Tamper-evident audit ledger

Related compliance overlays

  • SOC 2, GDPR Art. 17, HIPAA, DORA
On this page
  • What ISO 27001 requires.
  • How TeamSync addresses ISO 27001.
  • 1. Certified ISMS scope.
  • 2. Annex A 93 controls implemented + evidenced.
  • 3. ISO 27017 + ISO 27018 extensions.
  • 4. Continuous improvement evidence.
  • 5. Customer-facing artefacts.
  • What customers see.
  • Adjacent rules + frameworks served.
  • Personas this overlay serves.
  • Related capabilities
  • Related compliance overlays