Security Certification for the Cloud-Native Era.
DSS-1200 is the comprehensive security framework designed for modern software companies. It encompasses the core principles of SOC 2 and ISO 27001, whilst introducing mandatory controls for AI governance, serverless infrastructure, and software supply chain security.
Why DSS-1200?
A Superset of Legacy Standards
DSS-1200 maps directly to the Trust Services Criteria of SOC 2 and the Annex A controls of ISO 27001, ensuring baseline compliance whilst raising the bar for modern threats.
Built for AI & Cloud
The first major framework to mandate specific controls for Large Language Model (LLM) governance, prompt injection protection, and serverless architecture security.
Continuous Verification
Moving beyond the annual point-in-time audit. DSS-1200 is designed to be assessed continuously via API integrations with your infrastructure and identity providers.
The DSS-1200 Framework Architecture
The standard is divided into 12 core domains, covering 150+ specific security controls.
Governance & Leadership
02Identity & Access Management
03Data Protection & Privacy
04Infrastructure Security
05Application Security
06Cloud & Container Security
07AI & Emerging Technology Governance
08Supply Chain & Third-Party Risk
09Incident Response & Logging
10Physical & Environmental Security
11Legal & Regulatory Compliance
12Continuous Monitoring & Threat Detection
How to Achieve DSS-1200 Certification
Self-Assessment
Map your current controls against the 12 domains using our automated tooling or manual checklists.
Remediation
Address any identified gaps, particularly in modern domains like AI Governance and Supply Chain Risk.
Attestation
Publish your formal DSS-1200 Self-Assessment Report and display the compliance badge on your Trust Centre.