Microsoft SSP

Demonstrate that your business meets the privacy and security principles required to become a Microsoft vendor with a Microsoft SSPA attestation.

Do you work with Microsoft? Are your security and privacy considerations up to their standards? As a Microsoft Preferred Assessor, It Audit 360 has the experience needed to address any of your Microsoft SSPA needs.

Leverage ISO 27001 + ISO 27701 to meet your Microsoft SSPA requirements

Microsoft requires that all vendors meet the requirements within the Supplier Security and Privacy Assurance Program (SSPA). This program requires that any vendor that collects, stores, or processes customer, partner, or employee information meet the reporting requirements.

Together the ISO 27001 and ISO 27701 certifications can satisfy the requirements of Microsoft SSPA. These two certifications provide the controls and guidance required for establishing, implementing, maintaining, and continually improving an organization’s privacy information management system (PIMS).

The benefits of a Microsoft SSPA attestation:

Microsoft SSPA services

ISO 27001 + ISO 27701 certification

ISO 27001 audit: We review your company’s documentation to confirm that it follows the ISO 27001 standard and check to see that required activities have been completed in Stage 1. During Stage 2, we will test and confirm that your system is conformed to the ISO 27001 standard.

Adding ISO 27701:  As an extension to ISO 27001, this assessment provides the requirements and guidance for establishing, implementing, maintaining and continually improving your organization’s PIMS.

At the completion of the audit a certification will be provided, valid for three years upon completion.

Microsoft SSPA assessment

We review your organizational controls as they relate to Microsoft’s Supplier Data Protection Requirements (DPR). This includes identification of any gaps against the requirements along with remediation recommendations. At the end of the assessment a practitioner’s report will be provided, valid for one year upon completion.

Why It Audit 360

ISO assessments completed

0 K+

SOC assessments completed

0 k+

auditors globally

0 +

RESOURCES

Blog

Understanding Microsoft SSPA Attestation

Blog

Four Benefits of Combining ISO 27701 and ISO 27001

RELATED SERVICES

PCI DSS

PCI DSS

ISO 42001

ISO 27701

Your fast track to compliance starts here.

Our team is ready to assist you with any of your compliance, cybersecurity, and privacy needs. Complete the contact form and our team will reach out within 24 hours. 

Scroll to Top