



















We’re proud to hold two of the most recognised and stringent security certifications which demonstrate our ongoing commitment to implementing the highest standards of information security.
Oak Engage is proud to be ISO 27001 certified. This globally recognised certification is awarded by the International Organisation for Standardisation (ISO) for managing security. It demonstrates that we continue to meet rigorous standards in ensuring the security of our customers’ and partners’ data and information.


We have achieved the Cyber Essentials Plus certification, a UK government-backed scheme that sets the bar for cybersecurity excellence. This advanced level of certification involves rigorous testing of our systems, providing you with the assurance that we defend against the most common cyber threats.
Security and penetration testing are a fundamental part of our development and testing. Using tools such as Tenable app scanning, our development team integrates security into every stage of our software lifecycle. This ensures a proactive defence against potential threats.
Oak Engage partners with third-party security experts to conduct regular penetration testing and vulnerability assessments. These include threat vulnerability assessments, infrastructure, web application and mobile testing. These external evaluations provide an unbiased review of our systems, ensuring your data remains secure against evolving threats.
Our Software as Service (SaaS) is hosted on an enterprise grade cloud platform. You can typically access these from web browsers or mobile/desktop clients. It is a secure and accessible environment for your employees. With Oak, all of your content and data is stored on Microsoft Azure, one of the most reputable and secure cloud platforms on the market. Azure boasts more security certification than any other cloud provider, including ISO 27001, so rest assured any sensitive information is safe! You can find more information on certification and compliance on the Azure Trust Centre.
We continuously audit our systems to maintain the highest security standards. Automated monitoring tools track unusual activity, while periodic audits ensure that all systems remain in compliance with the latest security regulations and best practices.
In the rare event of a security issue, our incident response team is ready to act immediately. With a clear action plan and 24/7 support, we work quickly to identify, mitigate and resolve any issues.