Sophos Trust Center

Recent updates
CISO Playbook: North Korean IT Workers
Advisory: Apache Parquet Vulnerability (CVE-2025-30065)
INC-2025-003: March 2025 Internal Sophos Phishing Attempt
Trust is earned through transparency
Explore how we build, protect, and improve the products and services you rely on.
Security
How we design, test, and disclose security measures to safeguard our systems and protect against threats.
Compliance
Our commitment to meeting global security standards, regulations, and certification requirements.
Data protection and privacy
Our approach to data protection, transparency, and user privacy rights across our products and services.
Governance
The principles, policies, and agreements that shape our ethical, legal, and corporate responsibilities.
Environmental
Our impact-driven sustainability efforts, from reducing e-waste to ensuring workplace safety.
Resilience
How we maintain uptime, analyze incidents, and continuously strengthen our service reliability.
Compliance and certifications
Sophos follows leading security and compliance standards to help you meet regulatory requirements and stay audit-ready.









Transparency in practice: Pacific Rim
Discover how Sophos X-Ops identified a targeted campaign by Chinese nation-state actors—turning the threat into an opportunity to strengthen our defences and inform the security community.

"This is where we begin to make a difference in the world. To not only keep our customers more secure, but to demonstrate to them how we're keeping them more secure."
Joe Levy, Sophos Chief Executive Officer


Reporting security issues
We believe security is a shared effort. Since 2018, our Bug Bounty community has helped uncover over 1,200 vulnerabilities, earning nearly $500,000 in rewards. Join us in making the digital world safer.

