Security built for critical infrastructure

Cognite Data Fusion® enables mission-critical industries to make asset data more accessible and meaningful to humans and machines. Cognite partners with Industrial organizations to securely delivering solutions to industry. Security is at the center of our people, processes, and technology. Since its inception, Cognite has continuously, invested in security awareness and training to support integrated DevSecOps practices.

Supporting customer security requirements with people, process, and technology.

Compliance overview

Cognite’s Secure Development lifecycle, spanning infrastructure, applications, and operations, are tested and audited by third parties, demonstrating compliance to:
ISO 27001, ISO 9001, SOC Type 2 (Security), SOC Type 3 (Security) and CCC+

Cognite supports customers with specific regulatory and industry requirements. Cognite Data Fusion supports customers to meet the following industrial security requirements:
NIST CSF, IEC 62443.2-4, IEC 62443.3-2, IEC 62443.3-3, IEC 62443.4-1, CMMC, FIPs, NERC CIP v.5, GxP, CSA STAR Level 1

Accreditation reports

Cognite can provide reports to prospective customers attesting to compliance with the following standards and frameworks:
SOC Type 2 (Security), SOC Type 3 (Security), ISO 27001, ISO 9001

Reporting security issues

If you've identified a potential security flaw in our infrastructure or software, please let us know by following the procedure outlined here: