Security Standards
Rarefied performs penetration testing in compliance with a number of industry standards. If you don't see a particular standard your organization is looking to comply with listed below please reach out to see how we can assist your company.
FISMA
FISMA requires federal agencies to develop, document, and implement an information security program to protect their information and information systems.
Common Industries: Government and Public Sector
GDPR
GDPR emphasizes the importance of data protection by design and by default.
Common Industries: E-commerce, Education, Financial Services, Fortune 100, Healthcare, Manufacturing, Retail, Tech Startups and SaaS
GLBA
GLBA requires financial institutions to protect the confidentiality and integrity of customers' private financial information.
Common Industries: Financial Services, Fortune 100
HIPAA
While HIPAA does not explicitly mandate penetration testing, the Security Rule requires covered entities and their business associates to conduct regular risk assessments and implement appropriate security measures to safeguard electronic protected health information (ePHI).
Common Industries: Fortune 100, Healthcare, Tech Startups and SaaS
ISO
ISO 27001 is an international standard for information security management systems (ISMS).
Common Industries: E-commerce, Education, Financial Services, Fortune 100, Government and Public Sector, Healthcare, Manufacturing, Retail, Tech Startups and SaaS
NIST
NIST SP 800-53 provides a catalog of security and privacy controls for federal information systems and organizations.
Common Industries: E-commerce, Education, Financial Services, Fortune 100, Government and Public Sector, Healthcare, Manufacturing, Retail, Tech Startups and SaaS
PCI DSS
PCI DSS mandates penetration testing as part of Requirement 11, which focuses on regularly testing security systems and processes.
Common Industries: E-commerce, Financial Services, Fortune 100, Retail, Tech Startups and SaaS
SOX
SOX focuses on the integrity of financial reporting and the protection of financial data for publicly traded companies.
Common Industries: Financial Services, Fortune 100
Ready to get started?
We look forward to discussing your security testing needs.