WSO2 logo

Security Your Enterprise Can Depend On

Enterprise-grade security, transparency, and assurance for your mission-critical business operations.

Global compliance

Independently audited certifications, attestations, and built-in capabilities to support
global compliance and standards.

ISO 27001:2022 Certified
ISO 27001:2022 Certified
SOC 2 Type 2 Compliant
SOC 2® Type 2 Compliant
PCI DSS Certified
PCI DSS Certified
GDPR Compliant
GDPR Compliant
CCPA Ready
CCPA Ready
DORA Compliant
DORA Compliant
HIPAA Compliant
HIPAA Compliant
OpenID Certified
OpenID® CertifiedTM

Secure engineering

01

Secure software development process

Security built into every phase of the lifecycle, from design through release and beyond.

Explore Process
02

Secure engineering guidelines

Secure engineering practices for safer development throughout the lifecycle.

Explore Guidelines
03

Secure deployment guidelines

Security guidelines and recommendations to deploy WSO2 products.

Explore Guidelines

Vulnerability management

Vulnerability management

Program for continuous vulnerability management across all products and services.

Explore Program
Responsible disclosure

Program for reporting vulnerabilities, with recognition and rewards for qualifying submissions

Explore Program    Report Security Issues

Cloud security

Cloud security process

  1. Cloud native DevSecOps practices and secure operations across the service lifecycle.
Explore Process

SaaS incident notification

  1. Transparent security incident notifications for cloud service subscribers.
Explore Policy
cloud-security

Security announcements

Security
advisories

Information on vulnerabilities affecting our products and services.

View Advisories
Cloud security
bulletins

Information on vulnerabilities affecting our cloud products and services.

View Bulletins
CVE
justifications

Justifications for non-impacting CVEs associated with our products and services.

View Justifications
Incident
clarifications

Analysis of widely discussed security events.

View Clarifications

Data privacy and protection

Transparent privacy and data protection resources to help you understand how
your data is handled, protected, and governed.

View Data Privacy and Protection Details