Certifications
The foundation of trust
Roche uses certifications to validate our high security standards.
Customers trust in Roche solutions for clinical and business decisions requires confidence in our ability to secure data and the critical infrastructure managing it, supporting reliable operations and business continuity. Roche aims to build this trust and confidence by complying with recognized industry standards and best practices for security and quality.
For navify® solutions we have chosen to certify our information security management system to the ISO/IEC 27k series (27001 / 27017 / 27018) as the foundation adding local certificates as required to operate in those markets. For solutions that comply with this framework cybersecurity and data privacy is implemented based on the following key tenants:
Based on risk assessments navify solutions implement various technical, physical and administrative controls to mitigate risk.
Access to structured policies for continuous improvement and a leadership team to create, manage and deploy policies.
Safeguards the confidentiality, integrity and availability of data and systems.
Manages security threats using risk assessment.
Below are a few available industry certifications Roche complies with.
For information regarding standards relevant to specific products or services, please consult a Roche representative.

At Roche, we follow strict data governance principles and privacy policies to ensure your information is secure and used only for its intended purpose. Our systems are designed to comply with global regulations and to safeguard your data at every step.