Is this your company? Buyers are checking Cundall here. Claim cundall.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.
Claim free
Cundall
Sourced from public information. Not yet verified by the company.
Cundall is SOC 2 compliant. Cundall also holds ISO 27001.
About
Cundall is a global, independent, multi-disciplinary consultancy delivering sustainable engineering and design solutions across the built environment. We operate across 29 locations with over 1200 engineers and designers who are empowered to act with flexibility and agility in response to the local market conditions and practices. We are 100% owned by Partners working in the practice.
Compliance & infrastructure
Documents
13- Asset Management PolicyRequest
- Business Continuity and Disaster Recovery PlanRequest
- Cryptography PolicyRequest
- Data Management PolicyRequest
- Incident Response PlanRequest
- Information Security Policy (AUP)Request
- ISO 14001:2015 Environmental Management SystemRequest
- ISO 45001:2018 Occupational Health and Safety Management SystemRequest
- ISO 9001:2015 Quality Management SystemRequest
- Data Protection PolicyRequest
- Operations Security PolicyRequest
- Cyber EssentialsRequest
- Cyber Essentials PlusRequest
Subprocessors
8- MMicrosoft · Cloud hosting, marketing, and support servicesEU, MENA, APAC
- GGoogle · Cloud support servicesEU, MENA, APAC
- AAmazon Web Services · Cloud hosting and infrastructure servicesEU, MENA, APAC
- NNasuni · Cloud storage and data managementEU, MENA, APAC
- NNewforma · Project information managementEU, MENA, APAC
- MMimecast · Email security and threat protectionEU, MENA, APAC
- FFreshservice · IT service management and supportEU, MENA, APAC
- VVanta · Compliance monitoring and automationEU, MENA, APAC
Compliance leadership
The person who leads Cundall's SOC 2 isn't listed yet. Claim this profile to add it.
Penetration test
Unknown. Cundall's penetration test vendor isn't listed yet.
Claim this profile to add it.
This listing is partial
6/11 details · 55%SOC2C shows the verified essentials. 5 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.
- Auditorraises trustAdd the CPA firm that issued your SOC 2 so buyers can verify who signed it.
- Report dateraises trustAdd your most recent report period so buyers see how current your SOC 2 is.
- Renewal dateAdd your renewal window so buyers know your coverage is active.
- Other certificationsList your other frameworks (ISO 27001, HIPAA, PCI DSS) the way your trust center does.
- Security controlsConfirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.
Frequently asked
Is Cundall SOC 2 compliant?
Is Cundall ISO 27001 certified?
Can I use Cundall's SOC 2 for a vendor risk assessment?
Is Cundall penetration tested?
Is Cundall secure?
Does Cundall have a bug bounty or vulnerability disclosure program?
Who are Cundall's subprocessors?
Where does Cundall host or store data?
Where is Cundall's trust center or security page?
What is Cundall’s approach to Information Security?
How do you protect client and project data?
Do you encrypt data at rest?
How do you manage user access and authentication?
What measures protect your network and endpoints?
Do you conduct penetration testing?
What is your incident response capability?
What physical security measures do you use?
How do you ensure business continuity?
What is Cundall’s approach to Health & Safety?
How are staff trained on security and H&S responsibilities?
Business & Industrial peers that completed SOC 2

Octopus Deploy

Newsworthy.ai

1099-Prep
