Kantis
Qorelo GmbH Trust Center

Security & compliance

Qorelo GmbH Trust Center

Review our security posture, compliance programs, subprocessors, and available assurance materials.

Qorelo’s mission is to make SAP delivery faster, more efficient, and more scalable by giving consultants and enterprise IT teams an AI layer that supports work across the full SAP lifecycle. The company’s vision is to help teams scale SAP delivery capacity without scaling headcount, reduce manual project effort, preserve institutional knowledge after go-live, and keep live SAP systems running more intelligently over time.

Visit company website

Assurance

Security and compliance programs

Review published program status and supporting details.
SOC 2 Type 1 badge by Kantis Program active

Independent assurance

SOC 2 Type 1

View details
ISO 27001 badge by Kantis Certified

Certification standard

ISO 27001

View details
GDPR badge by Kantis Program active

Privacy regulation

GDPR

View details

Public disclosures

Security information

Information published by the organization for customer and partner review.

Policy titles shared publicly. Approved users can download the published policy PDFs.

Acceptable Use & Workstation Security
Access Control & Least Privilege
Authentication & Password
Background Screening & On/Off-boarding
Backup, Business Continuity & Disaster Recovery
Change & Release Management
Code of Business Conduct
Compliance & Regulatory Monitoring
Data Classification & Handling
Data Subject Request Workflow
Encryption & Crypto Controls
Incident Response & Breach Notification
Information Security Objectives
Information Security Policy
Information Sharing & Transfer
Internal Audit Procedure
ISMS Change Management Procedure
ISMS Communication Plan
ISMS Monitoring & Measurement Plan
Logging, Monitoring & Audit
Management Review Procedure
Nonconformity & Corrective Action Procedure
Physical Security & Environmental
Policy Management & Exception Handling
Remote Access & BYOD
Retention & Secure Disposal
Risk Management
Sanctions & Disciplinary
Secure Configuration & Hardening
Secure Software Development Lifecycle
Security & Privacy Awareness Training
Vendor & Third-Party Risk
Vulnerability & Patch Management