Threat ResQ

Company

Trust Center

The company that sells compliance automation should be able to show its own posture. Here's what we can currently point to, and where.

Standards

Standards & Methodologies We Align With

ISO 27001SOC 2CRESTMITRE ATT&CKNIST CSF

Standing

Alliances and data handling

Standards & methodologies

Delivery practices aligned to ISO 27001, SOC 2, CREST, and MITRE ATT&CK methodology — see Standards & Methodologies above for the current list.

Data handling

Customer and prospect data is handled under the policies published on our Privacy Policy and Terms pages, kept current as the platform and its regions expand.

In practice

How we handle your data

Consent before tracking

Analytics and marketing cookies stay off by default and only load after a visitor explicitly opts in through the cookie preferences banner — essential-only cookies run regardless, since the site needs them to function.

One verified company identity

A single registered address, phone number, and email identify Threat ResQ across the site and its structured data — no inconsistent legal entities or contact details across pages.

Evidence generated, not assembled

getTRAC logs compliance evidence as a byproduct of normal platform operation for clients running it — the same evidence-first approach we hold our own delivery practices to.

Questions we're asked

Trust FAQ

Is Threat ResQ ISO 27001 or SOC 2 certified?

We align our delivery methodology to ISO 27001, SOC 2, CREST, and MITRE ATT&CK — that means our processes are built to those standards, not that Threat ResQ itself currently holds a certification against them. We'll update this page directly if and when that changes.

How is my data handled?

Customer and prospect data is handled under the policies published in our Privacy Policy, Terms, Cookie Policy, and Data Processing documentation, linked below. Analytics and marketing cookies require explicit consent before they load.

Where is Threat ResQ based, and who do you serve?

Threat ResQ is headquartered in New Delhi, India. Engagements across the UAE, Saudi Arabia, Singapore, the UK, and the USA are scoped to each region's own regulatory context — see Global Presence for the specifics.

How do I report a security concern?

Contact us directly through the form on our Contact page, or email info@threatresq.com, and we'll route it to the right team.

Found something?

Report a security concern

If you believe you've found a security issue affecting Threat ResQ or its products, contact us directly and we'll route it to the right team.

Talk to an Expert

We use cookies for essential function and, with consent, analytics. Cookie Policy