A voice agent listens to your customers and records what they say. A chatbot holds their phone number and their history. At some point someone in your organisation will ask who is accountable for that data.
These are our answers, and you can read the certificates rather than take our word for them.
Every certificate below is downloadable in both English and Hebrew.
ISO 9001Quality management
ISO 27001Information security
ISO 27017Cloud security
ISO 27701Privacy information management
ISO 27799Health information security| Standard | Scope | What it covers | Certificate |
|---|---|---|---|
| ISO 9001 | Quality management | The management system standard. It governs how work is scoped, delivered and reviewed — the reason a build has a defined process rather than depending on who happens to run it. | EN · HE |
| ISO 27001 | Information security | The core information security standard. It covers how customer data is classified, stored, accessed and disposed of, and how incidents are handled. | EN · HE |
| ISO 27017 | Cloud security | Extends 27001 to cloud services specifically — shared responsibility, virtual environment separation, and the controls that only matter once your data lives on someone else's infrastructure. | EN · HE |
| ISO 27701 | Privacy information management | The privacy extension: how personal data is processed, on what basis, for how long, and what happens when someone asks for theirs to be removed. | EN · HE |
| ISO 27799 | Health information security | Health-sector information security. It is the standard that matters if an agent of ours ever handles a clinic's calls or a patient's details. | EN · HE |
AGENTALK, the voice platform we deploy on, runs under the same certified management system — the scope of these certificates covers it. That matters because the voice platform is where call audio and transcripts actually live.
Plenty of vendors write "enterprise-grade security" on a page and stop there. It costs nothing to write and means nothing to a buyer. A certificate has an issuing body, a scope statement and an expiry date — it can be checked, which is the entire point.
If your procurement or compliance team needs something these do not cover, ask us. We would rather answer the question than have you assume.
Yes. Connectop holds ISO 9001 (quality management), ISO 27001 (information security), ISO 27017 (cloud security), ISO 27701 (privacy information management) and ISO 27799 (health information security). All certificates are published for download in English and Hebrew.
The certificates are issued to Connectop and their scope covers AGENTALK's operations, so the same standards apply to the voice platform.
Storage location and retention are defined per deployment and documented as part of the implementation. If you have a specific requirement — a region, a retention window, a deletion policy — raise it during scoping and it goes into the build.
ISO 27799 covers health information security specifically, and ISO 27701 covers privacy management. Whether a particular project is a fit depends on the data involved, which is a conversation worth having before anything is built.
Send your compliance questions and we will answer them in writing.
Talk to us Hear a voice agent