Skip to main content

Rippling obtains ISO/IEC 27001 certification

Terminal key surrounded by circuit lines.

Rippling is excited to announce that it has successfully achieved ISO/IEC 27001 certification. 

The scope of this audit was company-wide and incorporated all of our products. This gives our customers assurance that Rippling has implemented mature security controls across our entire platform—highlighting our commitment to keeping our customers’ data secure.

ISO 27001 compliance is evidence of Rippling’s continued investment in building a security program that meets global security standards. According to Duncan Godfrey, our Chief Information Security Officer, it validates Rippling’s readiness to support Enterprise customers and ensure the protection of their data:

I’m very proud of the Security Program we are building here at Rippling, and testing it against the high bar of ISO 27001 compliance was an exciting step for us. It shows we are ready to meet the high security expectations of Enterprise customers.

What is ISO/IEC 27001?

The International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC) co-published this internationally recognized certification. It defines the requirements for setting up and maintaining an information security management system (ISMS), which is a documented set of policies that govern and protect an organization’s sensitive data. An ISMS acts as the central hub for an information security program. It helps companies identify cyber risks, address security vulnerabilities, and proactively manage any threats by spelling out action plans in the event of a breach. 

Rippling’s ISMS is embedded across the entire organization to ensure security is a key pillar of our strategy. 

Rippling’s other new security certifications

In addition to ISO/IEC 27001, Rippling has also achieved certifications for ISO/IEC 27018 and CSA STAR Level 2. 

      Protecting sensitive data is crucial. You’re safe with Rippling.

      As an all-in-one HR, IT, and Finance solution, employee data is at the center of everything Rippling does, which is why we go the extra mile to protect this sensitive information. In addition to the new certifications, Rippling is also SOC 1 and SOC 2 compliant and adheres to industry best practices. 

      Learn more about Rippling’s comprehensive

      Disclaimer

      Rippling and its affiliates do not provide tax, accounting, or legal advice. This material has been prepared for informational purposes only, and is not intended to provide or be relied on for tax, accounting, or legal advice. You should consult your own tax, accounting, and legal advisors before engaging in any related activities or transactions.

      Rippling logo
      Schedule a demo with Rippling IT today

      Author

      Profile picture of Vanessa Kahkesh.

      Vanessa Kahkesh

      Content Marketing Manager, HR

      Vanessa Kahkesh is a content marketer for HR passionate about shaping conversations at the intersection of people, strategy, and workplace culture. At Rippling, she leads the creation of HR-focused content. Vanessa honed her marketing, storytelling, and growth skills through roles in product marketing, community-building, and startup ventures. She worked on the product marketing team at Replit and was the founder of STUDENTpreneurs, a global community platform for student founders. Her multidisciplinary experience — combining narrative, brand, and operations — gives her a unique lens into HR content: she effectively bridges the technical side of HR with the human stories behind them.

      Hubs

      Explore more

      Open padlock with keypad, pattern, fingerprint, and identity icons

      IT security in 2025: Rippling's CISO and IT pro talk data, trends, and tips

      Explore insights from our webinar featuring Rippling's CISO and IT pro on the evolving landscape of IT security. Discover key challenges IT leaders face, what they will prioritize in 2025, and why compliance matters. Read more for actionable takeaways.

      Wide welcome panel with Duncan Godfrey’s headshot and CISO title

      Rippling hires Duncan Godfrey as CISO

      Rippling is thrilled to welcome Duncan Godfrey to the team as our new as CISO.

      Five people pose in front of a sign and purple flowers

      Rippling expands India operations with second office

      Rippling opens a second office in Bengaluru to scale operations and double its India workforce to 2,000.

      Globe enclosed by a translucent shield on dark purple.

      Compliance beyond the certifications: How we keep customer data secure

      Discover Rippling's journey beyond standard compliance to build a security-first culture that prioritizes customer-focused data protection.

      Welcome banner for Eisar Lipkovitz with a headshot and CFO label.

      Rippling appoints Eisar Lipkovitz as Chief Product Officer

      Rippling hired Eisar Lipkovitz, formerly at JP Morgan, Lyft, and Google, as Chief Product Officer at Rippling.

      Graphic illustration of a ripple pattern formed with converging lines

      What you need to know about employee data privacy, security, and compliance

      Managing employee data is crucial for business operations, legal compliance, and data protection. This guide will help you manage employee data securely.

      Graphic illustration of ripples formed with converging lines

      Top 8 cybersecurity framework list for 2025

      Explore the top cybersecurity frameworks for risk management and compliance. Find a list of the best cybersecurity frameworks for your business in 2025.

      Repeating “SOC2” text in yellow, coral, and white on burgundy

      Rippling IT achieves “gold standard” SOC 2 type II security certification

      Discover how Rippling's SOC 2 Type 2 certification enhances data security, ensuring the highest standards of protection for your business. Learn more.

      See Rippling in action

      Increase savings, automate busy work, and make better decisions by managing HR, IT, and Finance in one place.