ISO 27001
cloud hosting

Certified platform operations – ISMS per ISO 27001:2022, plus ISO 9001.

Made in Germany ISO 27001 ISO 9001 DSGVO-konform DORA Compliant 24/7 Support
UDSVolkswagenLiebherrT-SystemsVendureecoConnextPortainerBITMARCKUelzener VersicherungenFJDDWTOCCReiner SCTCyrus IndustrialDGSIEMnanocosmosInheadenSplixSchwarzgruppeINHHadesHiOrg-Serverown3dTikfinityProgram51Buben & MädchenPrime InsightsTELTECElevantiqMoovitCFToolsStadt KölnVivavisAvemio

ISO 27001 in line-of-business operations

The same software operations as on our product pages – with ISO 27001:2022 and ISO 9001 as the auditable foundation for running your line-of-business app via bring-your-own-app.

Certified ISMS

ayedo per ISO 27001:2022 and ISO 9001 – documented policies and reviews.

Technical controls

Hardening, segmentation, WAF, backups, observability.

Operating processes

Change management, incident management, patchable maintenance windows.

Evidence for customers

Support for vendor assessments and due diligence.

How we do it

From platform to support – book modularly or as a package. Each layer builds on the previous one.

Platform

Managed Kubernetes

Cluster, networking, storage, ingress, and certificates – production-ready in Germany.

KubernetesInfrastructure

Line-of-business app

GitOps with Argo CD

Delivery of your custom software – controlled releases from staging to production.

GitOpsArgo CDCustom

Observability

Observability

Metrics, logs, traces, and endpoint checks – alerts and runbooks included.

MonitoringSLO

Onboarding

Your team ready to go

Access, tools, and deployment workflows – we onboard you to GitLab, Argo CD, and day-to-day operations.

OnboardingGitOpsProcesses

Support

Expert support

Defined response times, optional 24/7 – when it matters, we are there.

SLA24/7

Compliance & regulatory requirements

The ayedo Cloud is ISO 27001-certified and meets the requirements of current EU regulations by default: GDPR, NIS-2, DORA, CRA, Data Act and the Cloud Sovereignty Framework.

GDPR-compliant data processing

Privacy by Design & Default.

EU data residency (Germany), customer-managed keys (BYOK/BYOHSM), encryption at rest/in transit. ISO 27001-certified data protection management. More about GDPR.

NIS-2-compliant operations

Resilience in operations.

24/7 monitoring, incident response, BCP/DR processes, supply chain transparency (SBOM). More about NIS-2.

DORA-ready

ICT resilience, tailored.

ICT risk management, documented exit strategies, third-party risk management, TLPT readiness. More about DORA.

CRA-compliant software supply chain

Security by design across the entire lifecycle.

SBOM generation, CVE scanning, signed container images, GitOps-based audit trails. More about the CRA.

Cloud Sovereignty Framework

Digital sovereignty made measurable.

EU-based operations, open standards, exit capability without lock-in. More about the framework.

Data Act-compliant portability

Switching without barriers.

Open APIs, standardized formats, complete exit runbooks. More about the Data Act.

Integrated compliance roadmap

Holistic approach.

How ayedo systematically addresses GDPR, NIS-2, DORA, CRA, Data Act and ISO 27001/9001. To the overview.

Related compliance topics

GDPR app hosting

You build it. We run it.

Excellent performance and maximum uptime - that's what we wake up for. And sometimes even in the middle of the night.

100+ clusters

under Management

We operate more than 100 Kubernetes clusters in production for our customers.

300+ databases

under Management

We operate, monitor, and protect more than 300 production databases.

1 Petabyte Object-Storage

under Management

We operate one petabyte of object storage for backups, artifacts, and application data.

100 million timeseries

on average

Our monitoring systems ingest 4 million datapoints per second.

38.000+ Logs

per second

Our collectors capture logs continuously and store them GDPR-compliant — over 100 billion entries per month.

5.000+ Backups

per day

We write more than 5,000 backups every day to encrypted long-term storage — about 150 terabytes of backup volume per month.

270 million user sessions

per month

More than 9 million user sessions run through software we operate every day.

99,99% Uptime

annual average

Our managed services are unavailable for less than one hour per year on average.

MTTD < 5 minutes

on average

Our alerting typically detects faults and outages within a few minutes.