Validating Investment in World-Class Information Security, Versa Extends Security and Privacy Controls with New and Renewed Industry Certifications

Company Renews ISO 27001 for Seventh Year with New ISO 27017 and ISO 27018 Compliance; Also Renews SOC 2 and HIPAA Standards Following Independent Audits to Protect Customer and Patient Data
Santa Clara, Calif. – Oct. 30, 2025

Versa, the global leader in unified networking and security, today announced it has successfully achieved ISO/IEC 27001 recertification, with the inclusion of extended cloud-specific security and privacy controls aligned to ISO/IEC 27017 and ISO/IEC 27018. Versa has also been fully re-certified for the SOC 2 and Health Insurance Portability and Accountability Act (HIPAA) standards following extensive independent audits. These certifications reflect Versa’s continued investment in maximizing the security and privacy of customer data and ensuring operational continuity by meeting the most rigorous international standards.

Meeting the additional ISO/IEC 27017 and 27018 standards reflects further enhancements to Versa’s information security management systems and the company’s continued commitment to delivering secure, privacy-conscious cloud solutions in alignment with globally recognized standards. ISO/IEC 27017 provides guidelines for implementing information security controls tailored to cloud environments, benefiting both Versa and its customers through enhanced cloud security practices. ISO/IEC 27018 focuses on the protection of personally identifiable information (PII) in public cloud services.

Best Practices in Information Security Management

The re-validation of the ISO 27001 certification through a successful surveillance audit reflects a systematic approach to managing sensitive data owned or handled by Versa, including robust measures in areas such as risk management, data protection, and governance to support the secure delivery of services from the VersaONE Universal SASE Platform. The certification and continued validation signal that Versa’s systems adhere to the best practices and principles enshrined in the international standard, which is the most recognized global framework for implementing, maintaining, and continuously improving an ISMS.

“The additional controls aligned to ISO 27017 and 27018 and the successful audits across several important certifications show our ongoing commitment to the highest information security management standards,” said Sunil Ravi, Chief Security Architect at Versa. “As Versa continues to advance with VersaONE, the industry’s leading Universal SASE platform, customers can trust that we follow stringent practices and protocols to keep their organizational and customer data safe.”

The SOC 2 Type 2 re-certification signifies that a service organization has undergone a comprehensive audit conducted by an independent third-party auditing firm of its internal controls related to security, availability, processing integrity, confidentiality, and privacy.

Achieving renewed HIPAA compliance signifies that an organization or entity subject to HIPAA has implemented the necessary safeguards and measures to secure and protect the privacy of individuals’ protected health information (PHI), a critical requirement in the healthcare industry.

Versa’s Security Certification Program

Versa continues to invest in security certifications that are significant for enterprises, governments, and service providers responsible for critical infrastructure who must ensure the highest levels of security and performance for their organizations. Other major certifications achieved by Versa include:

  • FIPS 140-2 issued by NIST – Complete end-to-end security with FIPS validated cryptography for the entire solution.
  • PCI DSS Compliance – Versa solutions have demonstrated compliance with the Payment Card Industry Data Security Standard (PCI DSS), which is essential for organizations handling credit card and payment data.
  • Common Criteria EAL4+ – ISO 15408 is a European Union framework for cybersecurity testing and certification of commercial products, with the Versa Operating System (VOS) underlying Versa’s Universal SASE and SD-WAN platforms achieving the highest level of security assurance.
  • Common Criteria NIAP – National Information Assurance Partnership (NIAP) evaluated and certified VOS, with the Network Device Common Protection Profile (NDCPP), Firewall Protection Profile, VPN Gateway Protection Profile, and Intrusion Prevention System (IPS) Protection Profile.
  • ISO 9001 – The Versa Networks QMS applies to all activities related to the design, development, delivery, and maintenance of the Versa Software Platforms.
  • ISO 14001 – The environmental activities located at the corporate site related to office operations and management of IT assets.
  • ISO 20000-1 – Planning, management, support, and delivery of platform support services to Versa customers.
  • ISO 22301 – Versa has implemented a BCMS that conforms to requirements of the International Organization for Standardization (ISO) to standardize the process for establishing, implementing, operating, monitoring, reviewing, and maintaining a BCMS.

To learn more about Versa’s latest certifications and ongoing commitment to meeting the highest independent and government-led cybersecurity and information management standards, visit Compliance and Certifications at the Versa Security and Trust Center at https://versa-networks.com/versa-security-and-trust-center/

About Versa
Versa, the global leader in unified networking and security, enables organizations to create self-protecting networks that radically simplify and automate their network and security infrastructure. Powered by AI, the VersaONE Universal SASE Platform delivers converged SSE, SD-WAN, and SD-LAN solutions that protect data and defend against cyberthreats while providing a superior digital experience. Thousands of customers globally, with hundreds of thousands of sites and millions of users, trust Versa with their mission-critical networks and security. Versa is privately held and funded by investors such as Sequoia Capital, Mayfield, and BlackRock. For more information, visit https://www.versa-networks.com and follow Versa on LinkedIn and X (Twitter) @versanetworks.

Press Contact
Dan Spalding

dspalding@versa-networks.com
(408) 960-9297

Versa Networks, VOS, the Versa logo, and Versa Titan are or may be registered trademarks of Versa Networks, Inc. All other marks and names mentioned herein may be trademarks of their respective companies.