Certifications

Since its inception in 2004, one of Ednon’s objectives has been to improve the quality of its professional services.

In 2008, the company achieved ISO 9001 certification for its Quality Management System, the implementation of which had begun years earlier. Since obtaining this certification, the company’s commitment to continuous improvement has increased annually.

Therefore, two years later, in 2010, and as a result of its social responsibility, the company obtained ISO 14001 certification for its Environmental Management System.

Also, as a result of this commitment, the company also certified its core business, technology services, that same year with ISO 20000 certification for Information Technology Service Management.

At Ednon, due to increased internal awareness and understanding, as well as a growing awareness among its clients, regarding the secure handling of information, the company implemented an ISMS – Information Security Management System, which was certified under ISO 27001 in 2011. This certification ensures the confidentiality, integrity, and availability of information, both internally and externally.

Furthermore, as a result of the company’s specialization in cybersecurity and the services provided by its Security Operations Center and Incident Response Team (ENOC-CSIRT), in 2020 it achieved certification under the National Security Framework (ENS) at the medium level.

Continuing with the company’s plans for improvement and specialization in Cybersecurity, in 2022 we added the National Security Scheme (ENS) certification at the high level for our Managed Backup service, and in 2024 we also upgraded our ENOC-CSIRT service to the high level.

Achieving these certifications would not have been possible without the commitment and effort of Ednon’s staff and collaborators, which has been and continues to be fundamental.

The management systems described remain in effect, as does our commitment to ensuring that quality management is a real and operational reality in the company’s processes.

The effective implementation of the integrated management system within the company is audited annually (based on the five regulatory standards mentioned) by an independent and accredited external entity.

This guarantees the level of commitment and control over the performance of the activity.

These standards are:

UNE-EN-ISO 9001:2015

Our Quality Management System applies to the following areas: Consulting, design, integration, and implementation services for IT solutions; and the supply, maintenance, and technical support of information and communication systems.

Our objective is the continuous improvement of our processes to increase customer satisfaction with our services.

UNE-EN-ISO 14001:2015

From the Environmental Management System, with the same scope as the ISO 9001 standard.

With the objective of guaranteeing the company’s commitment to respecting the natural environment. To this end:

  • in addition to complying with all applicable legal requirements,
  • we collaborate with our suppliers and subcontractors to ensure that their products and services are environmentally responsible.
  • we have agreements with various authorized waste management companies that handle the disposal and recycling of waste generated specifically in the course of our activities.

Our commitment is:

  • To reduce the consumption of natural resources, on the one hand,
  • and to ensure the proper management of the waste generated, on the other.

The EMAS system is the Community Regulation on Eco-management and Eco-audit, a tool developed by the European Union that recognizes those organizations that have implemented an EMS (Environmental Management System) and have acquired a commitment to continuous improvement, verified through independent audits.

UNE-ISO/IEC 20000-1:2018

From the Information Technology Service Management System, which applies to ICT Support and Maintenance services.

UNE-ISO 27001:2023

The Information Security Management System, which is applied to the ICT information systems that support the company’s activity, ensuring confidentiality, integrity and availability.

ENS – National Security Scheme, High Category

The ENS consists of the basic principles and minimum requirements necessary for adequate protection of the information processed and the services provided by the entities within its scope of application, in order to ensure access, confidentiality, integrity, traceability, authenticity, availability and preservation of the data, information and services used by electronic means that they manage in the exercise of their powers.

National Network of SOCs (RNS)

The National Security Operations Network is a nationwide coordinated initiative that integrates Security Operations Centers (SOCs) specializing in the detection, analysis, and response to cybersecurity incidents.

Membership in the NSN involves actively collaborating within an ecosystem of information sharing, coordination, and best practices in security, contributing to a faster and more effective response to digital threats in both public and private environments.

This membership reinforces the organization’s commitment to advanced security, continuous monitoring, and information protection, aligning it with the standards and recommendations of the national cybersecurity ecosystem.

ENOC-CSIRT is a private CSIRT dedicated to providing services to public and private organizations. Its mission is to provide security services and protect the information systems of the organization’s various departments and external clients, both referred to hereafter as “beneficiaries,” in the event of security incidents that could affect the integrity, confidentiality, or accessibility of information, or harm the operations or reputation of those affected. These services are available to clients external to EDNON through a subscription, which can be contracted for all or part of the services offered.

Innovative SME Seal

The Innovative SME Seal, awarded by the Ministry of Science, Innovation and Universities, recognizes companies that stand out for their ongoing commitment to innovation, technological improvement, and the development of advanced solutions.

This distinction certifies that the company carries out R&D&I activities, incorporating innovation as a strategic driver of its growth and competitiveness, and fostering the continuous improvement of processes, services, and technological capabilities.

Having this seal reinforces the organization’s image as a dynamic, innovative, and future-oriented company, aligned with the objectives of digital transformation and technological development.