惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

博客园_首页
爱范儿
爱范儿
罗磊的独立博客
V
V2EX
量子位
Last Week in AI
Last Week in AI
Hugging Face - Blog
Hugging Face - Blog
博客园 - 司徒正美
Jina AI
Jina AI
博客园 - 叶小钗
小众软件
小众软件
博客园 - 【当耐特】
Y
Y Combinator Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
T
Tailwind CSS Blog
博客园 - 聂微东
Microsoft Security Blog
Microsoft Security Blog
美团技术团队
P
Proofpoint News Feed
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
有赞技术团队
有赞技术团队
MongoDB | Blog
MongoDB | Blog
Recent Announcements
Recent Announcements
酷 壳 – CoolShell
酷 壳 – CoolShell

Omnissa

Discover which solution is best for you: VDI, DaaS, or RDSH From on-prem to cloud: how Horizon licensing adapts to you Inside the Forrester TEI findings: Workspace ONE UEM delivered 170% ROI As security continues to evolve, has your mobile strategy? Introducing automated enrollment for Horizon Cloud desktops with Workspace ONE UEM Omnissa and GEMA partner to empower organizations with a modern digital sovereignty solution Attention Omnissa Intelligence users: Show off your dashboard! How P&O Cruises and Cunard manage devices & IT support at sea Omnissa Solution Exchange: Discover additional ways to maximize your Omnissa investments Horizon Cloud on vSphere: Hybrid DaaS made easy 10 challenges that hold back Horizon success Omnissa named a Leader in the 2025 Gartner® Magic Quadrant™ for Desktop as a Service Omnissa scores highest in 4 out of 4 Use Cases in 2026 Gartner® Critical Capabilities for Endpoint Management Tools Enabling the Modern Workforce with Omnissa Workspace ONE and Samsung Knox Suite Point of view: The autonomous workspace will reshape the role of enterprise IT Introducing Workspace ONE UEM 2602: A feature packed release with updates across the board Why security fundamentals matter more than ever Android XR Management with Workspace ONE What's new with DEX for Horizon: expanding partner ecosystems and integrations Customer adoption grows for Omnissa Horizon deployments on Nutanix AHV Optimize secure, seamless workspaces with IGEL and Omnissa Omnissa Secure Access Suite delivers secure browser functionality with the Omnissa platform ICYMI: Highlights from our “App Management Reimagined” event Omnissa Pass: Native MFA for stronger, simpler security Modern education—any device, everywhere learning with smarter IT DEX is a value strategy: How Omnissa helps turn IT from cost center to value engine From fragmentation to fruition: Why a platform approach wins Mod Stack architecture: Rebuilding for flexibility, scalability, and resilience New Omnissa 2026 study finds shadow AI, security gaps, and device instability expose need for end-to-end IT observability Omnissa accelerates global market momentum with strategic board expansion and executive leadership appointment
Trust is priority one for Omnissa cloud services
Andrea Smith · 2025-07-08 · via Omnissa

July 7, 2025

  • Andrea Smith

    Senior Program Manager, Omnissa Customer Security Assurance

    Andrea has over 20 years of experience working in technology and technical communications, including ten years working in the areas of cloud security, privacy, and compliance. In her current role, she collaborates with Omnissa cloud operations, engineering, cloud compliance, and the Omnissa legal team, to build programs that align cloud security processes with compliance, audit, and privacy requirements. Andrea has completed hundreds of customer risk assessments, and she routinely contributes to cloud security whitepapers for Omnissa. She has also participated as a subject matter expert for the ISC2 Certified Cloud Security Professional (CCSP) standard setting workshop and has written assessment items for the CCSP exam. 

    Read More From the Author

Omnissa is at the forefront of driving business to the cloud with our SaaS-first approach to digital workspace technologies. As an industry leader, customers expect us to implement rigorous security practices and manage their data safely in the cloud. Many rely on our compliance and attestation materials for their annual due diligence efforts. That’s why Omnissa is pleased to announce our first set of certifications as an independent company

After months of hard work by our product, cloud operations, and compliance teams, Omnissa has achieved certification under internationally recognized standards for information security management and privacy, including ISO 27001, 27017, 27018, 27701, in addition to our first set of audit reports. These certifications are proof of our commitment to protecting our customers' data and complying with data security best practices.  

International Organization for Standardization/International Electrotechnical Commission (ISO/IEC) 

ISO/IEC 27001 Information Security Management System (ISMS): ISO/IEC 27001 specifies the requirements for establishing, implementing, maintaining and continually improving an information security management system within the context of the organization. It also includes requirements for the assessment and treatment of information security risks tailored to the needs of the organization.

ISO/IEC 27017 Code of Practice for Information Security Controls: ISO/IEC 27017 gives guidelines for information security controls applicable to the provision and use of cloud services by providing additional implementation guidance for relevant controls specified in ISO/IEC 27002 and additional controls with implementation guidance that specifically relate to cloud services.

ISO/IEC 27018 Code of Practice for Protecting Personal Data in the Cloud: ISO/IEC 27018 establishes commonly accepted control objectives, controls and guidelines for implementing measures to protect Personally Identifiable Information (PII) in accordance with the privacy principles in ISO/IEC 29100 for the public cloud computing environment.

ISO/IEC 27701 Privacy Information Management System (PIMS): ISO/IEC 27701 outlines a framework for Personally Identifiable Information (PII) Controllers and PII Processors to manage privacy controls to reduce the risk to the privacy rights of individuals.

You can download the Omnissa ISO certificates by visiting the ISO certification page within the Omnissa trust center.

System and Organizational Controls (SOC) audit reports

SOC audit reports are independent third-party examination reports that demonstrate how we meet compliance controls and objectives. SOC reports also offer Omnissa a way to report to our customers about the effectiveness of our cybersecurity programs and to provide assurance that the controls are appropriately designed to meet the relevant Trust Services categories, including security, availability, processing integrity, confidentiality, and privacy. 

These reports cover in detail important cloud security control procedures, including access controls, physical and environmental security, system acquisition, development, and maintenance, communications security and many more. 

During our spring audit season, Omnissa underwent a SOC 2 Type 1 audit. A SOC 2 Type 1 report focuses on the design of controls at a specific point in time.  A SOC 2 Type 2 report focuses on the design of controls over a period of time. Omnissa intends to undergo SOC 2 Type 2 audits in the fall.

These reports are available for Omnissa cloud services; to see a list of available reports by service, visit the Omnissa trust center.

Back to insights