
Information security and quality management standards
Every message you send out to your customers is governed by compliance frameworks, many of which are complex. When you turn to a vendor to manage that activity, the organization must understand the complexity of your regulatory landscape and how to handle your data securely.
Two crucial compliance frameworks your communications vendors must follow are information security and quality management standards.
Information security standards
Compliance isn't just about meeting regulations; it's about building trust and reducing risk. When a company follows recognized standards and frameworks, it ensures data is handled securely, processes are consistent, and legal obligations are met. This lowers the chance of costly breaches or penalties, improves operational efficiency, and demonstrates accountability to customers and partners.
System and Organization Controls Audits (SOC)
The American Institute of CPAs (AICPA) created SOC reports to provide a framework for evaluating the effectiveness of an organizations' controls, particularly in service industries where data security and privacy is critical.
The SOC1 report is intended to provide clients with assurance over key servicing controls that may have a financial impact to the clients' financial statements.
The SOC2 report is intended to demonstrate the effectiveness of data protection and security controls based on the Trust Services Criteria which include security, availability, processing integrity, confidentiality and privacy.
ISO/IEC 27002
An international standard to help organizations manage their information security risks with a focus on cybersecurity and privacy protection. It's crucial for organizations that collect, process and store sensitive information.
NIST Cybersecurity Framework (CSF)
The NIST Cybersecurity Framework (CSF) is a widely recognized guide that helps organizations manage and reduce cybersecurity risks. It's built around five core functions—Identify, Protect, Detect, Respond, and Recover—which provide a clear roadmap for improving security posture. NIST CSF is a practical tool for building resilience against cyber threats.
What Computershare does
Computershare has a comprehensive information security policy framework that is aligned with ISO/IEC 27001 and associated ISO/IEC 27002 standards. The policy and standards apply to all geographic locations. Information security is regarded as a critical business function that is supported by a global and regional management team that includes dedicated cyber defence and cyber assurance resources. Our team delivers technologies, processes and controls designed to protect Computershare networks, systems, applications and data from attack, damage or unauthorized access. we actively support the business, and client needs whilst reducing risk.
Computershare Technology Services undergoes annual SOC 1 and SOC 2 audits. It's an important process intended to help earn the trust of our clients by demonstrating our commitment to protecting their information.
Having controls aligned and tested against industry Standards saves our clients time and resources and helps to streamline compliance.
Other security considerations
When you're choosing a vendor for your customer communications, you must also consider the company's risk and security practices. Here are some of the topics you should ask about:
ISO 9001 Quality Management standard
ISO 9001:2015 is an international standard that helps organizations deliver consistent quality and improve customer satisfaction. It supports building strong processes – covering everything from planning and operations to continuous improvement. It provides a flexible framework to ensure products and services consistently meet expectations.

What Computershare does
By partnering with Computershare, clients can count on the strength of our Quality Management System, built on ISO 9001:2015 principles. For more than a decade, this framework has driven our commitment to quality – ensuring we consistently meet customer expectations, reduce errors, and improve efficiency.
Crucial compliance frameworks your communications vendor must follow:
OSFI and privacy regulations

Computershare: the experienced vendor companies trust
At Computershare, we treat your data like it's our own. Our deep knowledge of the Canadian regulatory landscape and our reputation for regulatory compliance gives you confidence in every communication. To learn more about our adherence to compliance frameworks, contact us today.
Contact us
Computershare Communication Services
Our latest insights
View all insights

Crucial compliance frameworks your communications vendor must follow: OSFI and privacy regulations

Migrating to a new core? Read this first.

The hidden costs of unclear B2C communications

The end of “Dear Valued Customer”: Crafting truly personal banking moments

Beyond the Inbox: Why print still has a place in the digital age

Why communications are essential to personal banking

Beyond transactions: Why communications are essential to the insurance industry

Outsourcing your customer communications: your key to agility

The importance of layout in customer communications

The importance of colour in customer communications
