Skip to content

Trust Center

Zarv Trust Center

A security program structured on ABNT NBR ISO/IEC 27001:2022 and the SOC 2 Trust Services Criteria.

Here you will find our current policies and procedures, control coverage, subprocessors and how to report vulnerabilities.

Control coverage

90/93

ISO/IEC 27001 Annex A controls with a mapped Zarv control

23/30

ISO/IEC 27001 clause 4–10 requirements mapped

54/56

SOC 2 criteria with a mapped Zarv control

79

Approved documents in the current release

Release v2026.10.1

These numbers show which framework items have Zarv controls mapped to them. They do not represent a certification or an audit report.

SOC 2 categories in scope

The program covers four Trust Services Criteria categories.

  • Security

    31 of 33 criteria mapped

  • Availability

    3 of 3 criteria mapped

  • Confidentiality

    2 of 2 criteria mapped

  • Privacy

    18 of 18 criteria mapped

Latest updates

  1. ARQ-002Diagrama de Arquitetura de Redev1.1
  2. EVD-013Criptografia em Trânsito e em Repousov1.1
  3. EVD-038Configuração de TLS na borda (Cloudflare)v1.1
  4. EVD-038Configuração de TLS na borda (Cloudflare)v1.0
  5. FLX-004Fluxo de Acesso à Console Cloud (Controle de Origem)v1.1

View all documents

Need more detail?

Document contents are restricted. Request access and the Information Security team will reply to the email you provide.