
Summary
Diligent has 2 registry-verified rows and 10 vendor-stated rows in the CertReports index, last verified 17 Sep 2026. The strongest row is HIPAA: Vendor displays a HIPAA badge on its trust centre (claim; BAA availability not yet captured). This page is independent of the vendor’s own trust centre: dates, sources and caveats come from CertReports captures.
Reviewer brief
As of 17 Sep 2026, Diligent is listed in the FedRAMP registry as FedRAMP Authorized, with authorization dated 20 Nov 2019 and audit work performed by Schellman Compliance, LLC. As of 17 Sep 2026, Diligent is listed in the EU-US Data Privacy Framework registry as active across the UK Extension, EU-US, and SW-US Certifications, with an original certification date of 20 Oct 2016 and an expiration date of 29 Dec 2026. As of 17 Sep 2026, Diligent states on its trust centre that it holds SOC 1, SOC 2, ISO/IEC 27001, ISO/IEC 27017:2015, ISO/IEC 27018:2019, GDPR, CCPA, TX-RAMP, and IRAP, though these are vendor statements rather than registry-verified records. As of 17 Sep 2026, Diligent displays a HIPAA badge on its trust centre, but BAA availability has not yet been captured, so it cannot be confirmed whether Diligent offers a BAA. No public evidence found for any additional frameworks beyond those listed above as of 17 Sep 2026.
- FedRAMP: listed in FedRAMP registry as Authorized (issued 20 Nov 2019, auditor Schellman Compliance, LLC) as of 17 Sep 2026.
- EU-US Data Privacy Framework: listed in DPF registry as active (UK Extension, EU-US, SW-US Certifications), issued 20 Oct 2016, expires 29 Dec 2026, as of 17 Sep 2026.
- HIPAA: vendor displays a HIPAA badge on its trust centre as of 17 Sep 2026, but BAA availability is not yet captured; SOC 2, SOC 1, ISO/IEC 27001, ISO/IEC 27017, ISO/IEC 27018, GDPR, CCPA, TX-RAMP, and IRAP are all vendor-stated on its trust centre as of 17 Sep 2026.
Facts only, each dated; nothing here is inferred, scored or advised. Brief generated 17 Sep 2026; it is regenerated whenever a row changes.
Among compliance and grc vendors
2verified rows
Category median 1, across 118 indexed compliance and grc vendors. Diligent has more verified rows than 97 percent of them.
board managementcompliance managementgovernancerisk management
Compare with similar vendors
Pick your own comparisonCompliance grid
- HIPAAVendor-stated
Vendor displays a HIPAA badge on its trust centre (claim; BAA availability not yet captured)
as of 17 Sep 20261 source
SOC 2Vendor-statedVendor states SOC 2 on its trust centre
as of 17 Sep 20261 source- GDPRVendor-stated
Vendor states GDPR on its trust centre
as of 17 Sep 20261 source - FedRAMPVerified
FedRAMP Authorized
as of 17 Sep 20261 source · Schellman Compliance, LLC
ISO/IEC 27001Vendor-statedVendor states ISO/IEC 27001 on its trust centre
as of 17 Sep 20261 source
SOC 1Vendor-statedVendor states SOC 1 on its trust centre
as of 17 Sep 20261 source
ISO/IEC 27017Vendor-statedVendor states ISO/IEC 27017:2015 on its trust centre
as of 17 Sep 20261 source
ISO/IEC 27018Vendor-statedVendor states ISO/IEC 27018:2019 on its trust centre
as of 17 Sep 20261 source
EU-US Data Privacy FrameworkVerifiedActive: UK Extension Certification, EU-US Certification, SW-US Certification
as of 17 Sep 20261 source- CCPA / CPRAVendor-stated
Vendor states CCPA on its trust centre
as of 17 Sep 20261 source
TX-RAMPVendor-statedVendor states TX-RAMP on its trust centre
as of 17 Sep 20261 source
IRAPVendor-statedVendor states IRAP on its trust centre
as of 17 Sep 20261 source
No public evidence yet for PCI DSS, CSA STAR, Cyber Essentials, ISO 27701, ISO 42001. This does not mean the vendor lacks them; it means nothing public was found at the last check.
Legal artefacts
No DPA, BAA or subprocessor list has been captured from a public page yet. Registry rows above do not depend on this. Check the vendor trust centre.
Subprocessors
No subprocessor list captured yet.
Change history
- 17 Sep 2026CCPA / CPRA evidence addedA CCPA / CPRA row entered the index with state Vendor-stated.
- 17 Sep 2026GDPR evidence addedA GDPR row entered the index with state Vendor-stated.
- 17 Sep 2026HIPAA evidence addedA HIPAA row entered the index with state Vendor-stated.
- 17 Sep 2026IRAP evidence addedA IRAP row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27001 evidence addedA ISO/IEC 27001 row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27017 evidence addedA ISO/IEC 27017 row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27018 evidence addedA ISO/IEC 27018 row entered the index with state Vendor-stated.
- 17 Sep 2026SOC 1 evidence addedA SOC 1 row entered the index with state Vendor-stated.
- 17 Sep 2026SOC 2 evidence addedA SOC 2 row entered the index with state Vendor-stated.
- 17 Sep 2026TX-RAMP evidence addedA TX-RAMP row entered the index with state Vendor-stated.
Similar vendors with evidence
Related by product tags and the Compliance and GRC category, ranked by shared tags, description similarity and overlapping evidence. Never by popularity.