Certificates & Compliance – LexCyberAi

Our approach to certification

At LexCyberAI, we believe that claims must be backed by facts. That’s why all our security assertions are verified by independent auditing organizations and supported by international certifications.

143 AWS security standards
ISO 27001 In progress (Q2 2025)
SOC 2 Type II In progress (Q3 2025)
35+ Team certifications

Infrastructure — 143 AWS security standards

Our NIS 2 Compliance Management System runs on Amazon Web Services, one of the most audited and certified cloud environments in the world. Each of the 143 certifications results from a detailed, external security review conducted by independent, accredited auditors.

Why this matters for NIS 2

Under Article 21.2(d) of the NIS 2 Directive, you must manage supply‑chain security and conduct due diligence on IT suppliers. The certifications of the AWS infrastructure we use significantly simplify and reduce the scope of your audit — you can rely on them instead of conducting your own costly audits.

Key infrastructure certifications

Security management ISO/IEC 27001, 27017, 27018, 27701

Comprehensive standards covering the Information Security Management System (ISMS), cloud service security, and protection of personal data.

Organizational audits SOC 1, SOC 2 Type II, SOC 3

Attestation of the effectiveness of financial controls (SOC 1) and principles of security, availability, confidentiality, and privacy (SOC 2, SOC 3).

Payment security PCI DSS Level 1, PCI 3DS, PCI PIN

The highest level of certification for organizations processing cardholder data, plus standards for 3‑D Secure and PIN management.

Government standards HIPAA/HITECH, FedRAMP, FIPS 140-3

Compliance with rigorous sectoral and government norms, including protection of medical data (HIPAA) and U.S. federal systems (FedRAMP).

EU regulations GDPR and NIS 2 Ready

Full GDPR alignment thanks to safeguards and EU data‑location options. The infrastructure is fully ready for NIS 2 requirements.

Physical security Location in Ireland (EU)

Servers in AWS data centers with 24/7 protection, multi‑layer access controls, fail‑safe systems, and continuous environmental monitoring.

Full list: AWS Compliance Programs

Our platform — certifications in progress

In addition to relying on certified infrastructure, we are actively pursuing our own independent certifications for our processes and applications to provide an extra layer of trust.

IN PROGRESS (Q2 2025) ISO/IEC 27001:2022 — Information Security Management System

Certification will confirm that our ISMS aligns with international best practices. The process includes Stage 1 (documentation), Stage 2 (implementation), annual surveillance audits, and recertification.

IN PROGRESS (Q3 2025) SOC 2 Type II — System and Organization Controls Report

The report will confirm the effectiveness of our controls across five areas: security, availability, processing integrity, confidentiality, and privacy. Type II requires a testing period of at least 6 months and will be available to customers under NDA.

Why these certifications matter

ISO 27001 and SOC 2 are often required by enterprise customers during vendor assessments, by auditors checking NIS 2 compliance, by procurement teams in government and financial organizations, and by companies offering cyber insurance policies.

Team competencies validated by certifications

Security is built by people. Our experts hold the most prestigious industry certifications, ensuring top‑tier knowledge and experience.

(ISC)²CISSP

One of the most prestigious certifications in the industry (Certified Information Systems Security Professional), confirming comprehensive knowledge across eight cybersecurity domains (CBK).

ISACACISM & CISA

Confirmation of competence in strategic security management (Certified Information Security Manager) and in information systems audit (Certified Information Systems Auditor).

Other keyLead Auditor, CCSK, CCZT

Lead Auditor credentials for ISO 27001 and 22301, plus certifications in cloud security (CCSK) and Zero Trust architecture (CCZT).

Continuous professional education (CPE)

All of our team’s certifications require not only passing an exam and documented experience, but also ongoing professional education. Our experts regularly participate in conferences and trainings to stay current with the latest threats and defense techniques.

Transparency & Access to Documentation

We believe in full transparency. After contracting, we provide complete compliance documentation — including copies of certificates, audit reports, and a Data Processing Agreement (DPA) — to make your verification processes as simple as possible.

Contact us about certifications