Skip to content

Trust

Tricentis Security

Tricentis strives to implement and continuously execute a proactive strategy for security and compliance. As a leader in test automation for cloud and enterprise applications, we are dedicated to providing peace of mind to our customers by applying policies and procedures designed to keep our data, platform, and products secure. Although no security program is 100% immune to compromise, we utilize security controls that exceed the standards for the environments in which we operate.

Background

SOC 2 Type 2

Tricentis conducts a SOC 2 Type 2 audit on an annual basis to test the design and operating effectiveness of the controls relevant to Security and Availability. A SOC 2 audit is performed to provide our customers with the assurance that we have the controls in place to protect their information and data through secure systems. Tricentis currently undergoes SOC2 Type 2 for qTest, Testim, NeoLoad, Vera, VisionAI, Tosca Cloud, Tricentis Testim Salesforce, and Tricentis Test Management for JIRA.

 

SOC2 reports can be downloaded from the Tricentis Security Center.

ISO/IEC 27001

Tricentis’ Information Security Management System (ISMS) is certified through the ISO 27001: 2022 standard annually, over a 3-year certification cycle. ISO 27001 tests against the requirements for the establishment, implementation, maintenance and continual improvement of the ISMS. An ISO 27001 audit is performed to demonstrate to our stakeholders that information security is taken seriously. In-scope products are Tricentis Tosca On Prem, Cloud and VisionAI, LiveCompare, qTest, NeoLoad, Testim, Vera, Tricentis Test Management for JIRA, and Tricentis Testim Salesforce.

 

An ISO 27001 certificate can be downloaded from the Tricentis Security Center.

ISO 27701

Tricentis’ Privacy Information Management System (PIMS) is certified through the ISO 27701: 2019 standard annually, over a 3-year certification cycle. ISO 27701 tests against the requirements for the establishment, implementation, maintenance and continual improvement of the PIMS. An ISO 27701 audit is performed to demonstrate to our stakeholders that privacy is taken seriously. In-scope products are Tricentis Tosca On Prem, Cloud and VisionAI, LiveCompare, qTest, NeoLoad, Testim, Vera, Tricentis Test Management for JIRA, and Tricentis Testim Salesforce.

 

An ISO 27701 certificate can be downloaded from the Tricentis Security Center.

ISO 9001

Tricentis’ Quality Management System (QMS) is certified through the ISO 9001 standard annually, over a 3-year certification cycle. ISO 9001 tests against the requirements for the establishment, implementation, maintenance and continual improvement of the QMS. An ISO 9001 audit is performed to demonstrate to our stakeholders that quality management is taken seriously. In-scope products are Tricentis Tosca On Prem, Cloud and VisionAI, LiveCompare, qTest, NeoLoad, Testim, Vera, Tricentis Test Management for JIRA, and Tricentis Testim Salesforce.

 

An ISO 9001 certificate can be downloaded from the Tricentis Security Center.

Disclosure

Tricentis Vulnerability Disclosure Policy

Tricentis welcomes feedback from security researchers and our customers to help improve our security. If you believe you have discovered a vulnerability associated with any Tricentis assets, please contact us. By submitting a vulnerability report or participating in this vulnerability disclosure program, you agree to follow the guidelines in this Policy.