Security & Compliance You Can Trust
Insurance-grade security, fully EU-compliant, built on Azure West-Europe. At Onesurance, information security is the foundation of everything we do.
GDPR Compliant
100% EU data residency
ISO 27001
Certification Q2 2026
Azure Infrastructure
Microsoft datacenter security
24/7 Monitoring
Real-time security operations
About Onesurance
Onesurance delivers innovative SaaS solutions for the insurance industry, leveraging advanced technology to streamline insurance processes and enhance operational efficiency.
We serve insurance companies across the European Union with secure, compliant and reliable cloud-based services. We understand that our clients in the insurance sector trust us with sensitive and confidential data, and we take this responsibility seriously.
Our Security Approach
Our security approach is built on three core principles that guide everything we do:
Confidentiality
We protect sensitive and personal information against unauthorised access or disclosure through robust access controls, encryption and continuous monitoring.
Integrity
We ensure that information remains accurate, complete and unaltered through systematic checks and validation processes.
Availability
We maintain high availability of information and systems through redundant infrastructure, business continuity planning and proactive monitoring.
Key Security Highlights
We take a risk-based approach to information security, continuously identifying, assessing and treating security risks.
Security & Compliance
Infrastructure
Security Controls
Operations
Our Compliance Overview
Real-time status of our compliance frameworks and certifications.
AVG / GDPR
Full compliance since inception
ISO 27001
ISMS operational, certification Q2 2026
DORA
Insurance industry requirements met
EU AI Act
Preparing for compliance
NIST CSF
Core controls implemented
CIS Controls
Critical controls active
Built for the Insurance Industry
We understand the unique regulatory and operational requirements of the insurance industry. Our security framework specifically addresses:
-
DORA Compliance — Digital Operational Resilience Act requirements for insurance
-
Strict Data Protection — Specialised controls for policyholder and claims data
-
Regulatory Reporting — Capabilities aligned with EU insurance directives
-
Business Continuity — Disaster recovery designed for critical insurance operations
-
Third-Party Risk Management — Transparent sub-processor disclosure and management
Explore Our Trust Center
Dive into specific areas of our security and compliance programme:
Data Security
Multi-layer encryption & access control
Privacy & Data Processing
GDPR compliance and data protection
Infrastructure
Azure West-Europe architecture
Incident Response
24/7 security operations
Business Continuity
Disaster recovery & resilience
Vendors & Sub-processors
Third-party risk management
Compliance Frameworks
All frameworks overview
Certifications
Our compliance certifications
Questions About Our Security?
Our Data Protection Officer is happy to assist you with questions about security, compliance or privacy.