CERTIFICATIONS + REGULATORY ROADMAP

    Built for Enterprise Trust — Across India and the GCC

    VIZO361 ships with the certifications and regulatory alignment Indian and GCC enterprise buyers ask for first — and a public roadmap for the rest. Below: what is in place today and what is in flight.

    What's in place today

    Certifications and regulatory alignment that ship in every deployment pack. Independent certificates available on request.

    ISO/IEC 27001:2022

    Certified

    Information security management system certified at the legal entity level (Proeffico Solutions Pvt. Ltd.). Certificate number 27001-7724. Covers VIZO361 product engineering, customer deployments, and corporate IT.

    India DPDP Act 2023

    Aligned

    Default deployment configuration aligns with India's Digital Personal Data Protection Act. Consent management, India-region data residency, right-to-erasure workflows, and data principal grievance handling shipped in every deployment pack.

    EU GDPR

    Aligned

    Lawful basis assessment, DPIA template, sub-processor register, and standard contractual clauses available for EU-resident data subjects. India and GCC deployments routinely cover European HQ exposure.

    Oman PDPL + GCC PDPL family

    Aligned

    UAE PDPL, Saudi PDPL, Oman PDPL, Qatar Law 13/2016 alignment built in. GCC-region data residency available on request via the Lyqatech reseller channel (Oman) and direct delivery (UAE/KSA).

    Roadmap — what is in flight

    We publish the regulatory roadmap because enterprise buyers will ask. Quarters are targets, not commitments. Audit outcomes will be reflected here.

    Q3 FY27

    CERT-In empanelment (target)

    Empanelment as an information-security auditor / product vendor with India's CERT-In. Required for several PSU and BFSI tenders.

    Q3 FY27

    SOC 2 Type II audit window

    Service Organization Control 2 Type II — security, availability, confidentiality. Independent audit window opens Q3, report expected Q4.

    Q4 FY27

    SIRA (Dubai) approval

    Security Industry Regulatory Agency vendor approval — required for Dubai security-installation tenders and several UAE government accounts.

    Q1 FY28

    MoI (Saudi Arabia) registration

    Ministry of Interior security vendor registration — opens Saudi government and quasi-government tendering.

    Q1 FY28

    MoCI (Oman) certifications

    Ministry of Commerce and Industry vendor certifications via the Lyqatech reseller channel — required for Oman public-sector accounts.

    Q2 FY28

    NESA / NCA alignment audit

    UAE National Electronic Security Authority and KSA National Cybersecurity Authority alignment audits — completes the GCC public-sector enablement.

    Need a vendor security assessment pack?

    The Trust Center has policy library, sub-processor list, certificate downloads, and DPIA templates. For a custom security questionnaire response, contact us — typical turnaround is 5 working days.