Skip to content
Remote Fort logo

Remote Fort B.V.

Trust Center

How we secure the platform we ask customers to trust.

Program reviewed · 19 Aug 2026

Report a vulnerability

Frameworks

What we hold, what we map, what the law already requires.

Company marks in the footer—TISAX, Allianz für Cyber-Sicherheit, and PROKS—are ours. GDPR applies because we are an EU controller and processor. ISO 27001 and SOC 2 Type II are the control catalogs our ISMS is mapped to; reports are released under NDA.

Certified = independent mark we hold. Member = participation. Applies = legal obligation. Mapped = controls monitored against that catalog; attestation pack on request.

  • GDPR

    Applies

    Remote Fort B.V. is established in the Netherlands. We act as controller for the marketing site and as processor for customer tenants, with a DPA on request.

    18 controls

  • TISAX

    Certified

    Information security assessment for the automotive supply chain. Assessment summary is available to eligible customers under NDA.

    14 controls

  • Allianz für Cyber-Sicherheit

    Member

    Participation in the German Alliance for Cyber Security (BSI initiative). This is a membership mark, not an ISO certificate.

  • PROKS

    Certified

    Independent PROKS mark held by Remote Fort B.V. Details of scope are included in the NDA document pack.

  • ISO 27001:2022

    Mapped & monitored

    Our ISMS is mapped to ISO/IEC 27001:2022 Annex A. Statement of Applicability and related evidence are released under NDA.

    51 controls

  • SOC 2 Type II

    Mapped & monitored

    Trust Services Criteria for Security (and Privacy where in scope) are monitored continuously. The Type II report is available to customers under NDA.

    50 controls

  • AWS Security

    Mapped & monitored

    Production runs in AWS eu-central-1 with encryption, IAM least privilege, logging, and in-region backups. AWS is a subprocessor, not a Remote Fort certificate.

    4 controls

  • VAPT

    Mapped & monitored

    Independent vulnerability assessment and penetration testing at least annually. Executive summaries are shared under NDA.

    1 controls