Certified to deliver quality and protect your information
Peramal Services is certified to ISO 9001:2015 and ISO/IEC 27001:2022. These internationally recognized standards govern how we deliver projects and how we protect the data, code, and systems our clients trust us with.
Two Standards, One Commitment
Quality management and information security are built into how we work, and are independently audited.
Consistent, measurable delivery quality
Our ISO 9001-certified quality management system defines how we plan, deliver, review, and continually improve every engagement, so clients get predictable outcomes and a consistent experience across teams and locations.
- Defined, documented delivery processes for every engagement
- Quality reviews and acceptance criteria at each project stage
- Structured client feedback and satisfaction tracking
- Corrective and preventive actions to address root causes
- Regular internal audits and management reviews
- Continual improvement of processes, tools, and skills
Protecting client data, code, and systems
Our ISO 27001-certified information security management system governs how we protect the confidentiality, integrity, and availability of client information — from the people who access it to the systems and processes that handle it.
- Risk-based information security controls, reviewed regularly
- Role-based access with least-privilege principles
- Secure development practices and code review
- Confidentiality agreements and security awareness training for staff
- Incident management and business continuity planning
- Supplier and third-party security oversight
How We Protect Client Data
Key practices of our ISO 27001-certified information security management system.
Access control
Role-based, least-privilege access to client systems and data, with timely provisioning and removal as team members join or leave.
Data protection
Client information is classified and handled according to its sensitivity, with encryption and secure transfer used where appropriate.
Secure development
Security is considered throughout the development lifecycle through secure coding practices, code review, and security testing.
People security
Confidentiality agreements and ongoing security awareness training help everyone understand their responsibility for client information.
Incident management
Defined processes to detect, report, and respond to security events, supported by business continuity planning.
Risk management
Information security risks are assessed and treated systematically, and controls are reviewed as the business and threats evolve.
Quality Built Into Every Engagement
Our ISO 9001-certified quality management system follows a continual improvement cycle.
Plan
Clear scope, requirements, acceptance criteria, and delivery plans agreed with you up front.
Deliver
Defined processes, coding standards, and quality gates applied consistently across teams.
Review
Peer reviews, testing, and stage reviews confirm that work meets the agreed criteria.
Improve
Client feedback, internal audits, and root-cause analysis drive continual improvement.
Questions From Procurement Teams
Common questions about our certifications and how we work with client security and vendor reviews.
Need Our Certificates for a Vendor Review?
Our team can share certificate copies and support your security questionnaire or due-diligence process.