Certifications and Standards


CIPHER, as a pioneer in its segment, holds the important international ISO 20000 (IT Service Management System) and ISO 27001 (Information Security Management System) certifications. High investments of financial and human resources were required to position CIPHER at the highest certification level in the marketplace.

Another CIPHER’s highlight in the marketplace is the obtention of PCI QSA (Qualified Security Assessor) and PCI ASV (Approved Scanning Vendor) certificates, reinforcing even more its great outstanding position in the world market.

In all of its projects, CIPHER observes standards, rules and applicable laws, such as ISO 27001 (Information Security Management), ISO 15408 (Evaluation Criteria for IT Security), ISO 20000 (IT Service Management System), ITIL (Information Technology Infrastructure Library), COBIT (Control Objectives for Information and related Technology), PCI DSS (Payment Card Industry Data Security Standard), SOX (Sarbanes–Oxley). The work is further supplemented by recommended practices by the most renowned security organizations (SANS, NIST, CERT, CSRC, ISACA), with aims at meeting international information security best practices.

CIPHER adopts PMI / PMBoK (Project Management Institute / Project Management Body of Knowledge) guide as the basic guideline for conduction of the enterprise management activities, and most of CIPHER’s Project Managers are PMP-certified professionals.

CIPHER’s team is made up of professionals who hold, among others, the following certificates: CISSP, CISSP-ISSAP, CISM, CISA, ISO 27001 Leader Auditor, PCI QSA, PMP, ITIL Master, and several certifications by manufacturers such as: CCSE, ISS-CA, CCNA, MCSE, LPIC, among various other certificates.