
Trust Center
Opera Group takes information security, privacy and operational resilience seriously. Our security framework combines governance, policies, technical controls, operational procedures, employee awareness, monitoring and independent assurance to protect client, corporate and employee information.
Our Information Security Management System is aligned to ISO/IEC 27001 and supports the secure processing, transmission and storage of Opera Group information assets across relevant jurisdictions and core business activities. Opera Group uses a combination of access controls, cyber awareness training, vulnerability management, managed detection and response, incident response, business continuity planning and data protection controls to maintain a strong security posture.
Risk Profile
We have secure, reliable hosting that customers can depend on. We are happy to provide details about our risk mitigation practices and recovery objectives upon request.
Product Security
We pay great attention to enterprise features such as access control and single sign on. We are happy to provide more details about our enterprise features upon request.
Reports
We may provide security-related reports upon request.
Self-Assessments
We are working on our security compliance. We can provide completed questionnaires upon request.
Data Security
We follow industry best practices for data security. We are happy to provide more details about our data security practices upon request.
App Security
We take application security seriously and are putting together a program to monitor internal apps.
AI
We take the usage of AI seriously in our organization and work to ensure security and reliability of the AI.
ESG
We prioritize and take environmental, social, and governance (ESG) considerations seriously in our operations and decision-making processes.
Legal
We take legal matters seriously and we always engage our legal counsel to review all commercial activities. Please contact us if you have any questions.
Data Privacy
Privacy of customer data is top of mind. We follow industry best practices and follow all applicable privacy regulations.
Access Control
Access is tightly monitored and controlled at our company. We are happy to provide more details about our access control practices upon request.
Infrastructure
We take great care to work with best-in-class infrastructure providers that provide secure computing and storage. We are happy to provide more details about our infrastructure upon request.
Endpoint Security
We follow industry best practices for endpoint security. We are happy to provide more details about our endpoint security practices upon request.
Network Security
We protect our corporate network against external & internal threats.
Corporate Security
We implement internal measures and practices to maintain a high standard of security.
Policies
We are currently working with experts to put together our company policies. Please contact us for more details.
Security Grades
We are constantly monitoring the security of our website. We will post our grades from public security rating agencies when they become available.
Incident Response
We have a dedicated team that responds to security incidents. We are happy to provide more details about our incident response practices upon request.
Risk Management
We have a dedicated team that manages security risks. We are happy to provide more details about our risk management practices upon request.
Asset Management
We have strict asset management policies in place to ensure that all assets are accounted for and secure.
BC/DR
We have a business continuity plan in place to ensure that we can continue to operate in the event of a disaster.
Training
We provide security awareness training to all employees to ensure that they are aware of security best practices.
Change Management
We have a change and configuration management process in place to ensure that changes are properly reviewed and approved.
Physical & Environment
We have physical and environmental controls in place to ensure that our data centers are secure and reliable.
Continuous Monitoring
We continuously monitor our systems for security threats and vulnerabilities. We are happy to provide more details about our continuous monitoring practices upon request.
- Does your organisation have procedures in place to control the installation of software on IT production systems?
- Does your organisation have a process for reporting information security breaches that affect your clients to them in a timely manner?
- Does your organisation keep an up-to-date inventory of all data repositories, such as databases, with assigned owners?
- Are your organisation's information security policies reviewed and approved by senior management at least annually?
- Do you use appropriate legal mechanisms for all international transfers of personal data?
