CoVetTrust Center

Resource library

Our security, compliance, and policy documentation, including audit reports.

SOC 2 Type 2 Report 2025

January 9, 2025 - September 15, 2025

Feb 2026

ISO/IEC 27001:2022 Official Certificate - 2026

Certified - March 17, 2026

Mar 2026

GDPR Compliance Attestation & Assurance Report

No description available.

Mar 2026

CoVet - Vulnerability Assessment ReTest

No description available.

Mar 2026

Code of Conduct / Acceptable Use Policy

Defines ethical standards and acceptable behaviour for all employees, promoting integrity, professionalism, and respect in internal operations and external interactions.

Mar 2026

Information Security Policy

Outlines the organization's approach to protecting data and systems through administrative, technical, and physical safeguards aligned with compliance standards.

Mar 2026

Asset Management Policy

Provides guidance for identifying, classifying, and protecting company-owned assets, ensuring they are tracked, maintained, and security handled throughout their lifecycle.

Mar 2026

Data Management Policy

Defines how data is classified, stored, accessed, and retained to ensure accuracy, confidentiality, and regulatory compliance across business operations.

Mar 2026

Logical Access Policy

Describes how user access to systems and data is provisioned, reviewed, and revoked based on roles and business needs, following the principle of least privilege.

Mar 2026

Vulnerability Management Policy

Details the process for identifying, assessing, and remediating security vulnerabilities to reduce risk across infrastructure, systems, and applications.

Mar 2026

Incident Response Plan and Policy

Outlines how the organization detects, reports, investigates, and responds to security incidents to minimize impact and support recovery and compliance obligations.

Mar 2026

Software Development and Lifecycle Management Policy

Covers secure development practices, version control, and deployment standards to ensure software is securely developed, tested, and maintained throughout its lifecycle.

Mar 2026

Vendor Risk Management Policy

Defines how vendors are assessed, onboarded, and monitored for security and compliance risks, ensuring appropriate controls are in place for third-party access to data or systems.

Mar 2026

Business Continuity and Disaster Recovery Policy

Establishes plans for maintaining operations during outages or crises, and outlines recovery procedures to restore systems and services with minimal disruption.

Mar 2026

Privacy Policy

Explains how personal and sensitive data is collected, used, shared, and protected in accordance with relevant privacy regulations like GDPR, HIPAA, CRPA, CCPA, and other applicable privacy legislations.

Mar 2026

Risk Management Policy

To define actions to address CoVet information security risks and opportunities. To define a plan for the achievement of information security and privacy objectives.

Mar 2026

Information Security Roles and Responsibilities Policy

This policy and associated guidance establish the roles and responsibilities within CoVet, which is critical for effective communication of information security policies and standards.

Mar 2026

Human Resource Security Policy

Ensures that employees and contractors meet security requirements, understand their responsibilities, and are suitable for their roles.

Mar 2026
Powered by