
Palo Alto Networks
Compliance evidence
Protect your organization with
Compliance grid
- HIPAAVendor-stated
Vendor displays a HIPAA badge on its trust centre (claim; BAA availability not yet captured)
as of 18 Sep 20261 source
SOC 2Vendor-statedVendor states SOC 2 on its trust centre
as of 18 Sep 20261 source- GDPRVendor-stated
Vendor states GDPR on its trust centre
as of 18 Sep 20261 source - FedRAMPVerified
FedRAMP Authorized
as of 19 Sep 20263 sources · Schellman Compliance, LLC
PCI DSSVendor-statedVendor states PCI DSS on its trust centre
as of 18 Sep 20261 source
ISO/IEC 27001Vendor-statedVendor states ISO/IEC 27001:2022 on its trust centre
as of 18 Sep 20261 source- CSA STARVendor-stated
Vendor states CSA STAR on its trust centre
as of 18 Sep 20261 source
Cyber EssentialsVendor-statedVendor states Cyber Essentials on its trust centre
as of 18 Sep 20261 source
ISO/IEC 42001Vendor-statedVendor states ISO/IEC 42001:2023 on its trust centre
as of 18 Sep 20261 source
SOC 3Vendor-statedVendor states SOC 3 on its trust centre
as of 18 Sep 20261 source
ISO/IEC 27017Vendor-statedVendor states ISO/IEC 27017:2015 on its trust centre
as of 18 Sep 20261 source
ISO/IEC 27018Vendor-statedVendor states ISO/IEC 27018:2019 on its trust centre
as of 18 Sep 20261 source
ISO 22301Vendor-statedVendor states ISO 22301 on its trust centre
as of 18 Sep 20261 source- CCPA / CPRAVendor-stated
Vendor states CCPA on its trust centre
as of 18 Sep 20261 source
Cyber Essentials PlusVendor-statedVendor states Cyber Essentials Plus on its trust centre
as of 18 Sep 20261 source
IRAPVendor-statedVendor states IRAP on its trust centre
as of 18 Sep 20261 source
No public evidence yet for ISO 27701. This does not mean the vendor lacks them; it means nothing public was found at the last check.
Official framework marks identify the scheme each row is about; the CertReports state chip beside each mark is our assessment of the public evidence. How states are decided.