Built for Public Sector Confidence
Secure, Compliant Legal Case Management
The Iken Cloud Security Assurance document sets out our approach to security, resilience, and compliance in full. It’s designed for legal and IT teams that need confidence in the systems they rely on every day.
Whether you’re planning, or preparing a business case this document gives you the transparency and assurance you need
Inside the Guide
Our alignment with ISO/IEC 27001:2022 and UK Cyber Essentials
How we support UK GDPR and NCSC Cloud Security Principles
Multi-layered security, backup and continuity
Data storage architecture and sovereignty
Tailored advice for your team
Join our user group and ask questions
Iken Cloud is designed to meet the high security, compliance, and operational resilience standards required by public sector legal teams. From case files to audit trails, we help protect your organisation’s most sensitive legal information while making it accessible when and where you need it.
Explore how Iken Cloud gives your organisation the confidence to move forward, knowing your data is secure, your compliance obligations are supported, and your service is protected against disruption.
Security by Design
We embed multi-layered security across our systems — from infrastructure and applications to day-to-day operations.
Key features include:
Secure-by-design development principles
Regular penetration testing (CREST-accredited partner)
Microsoft Defender and real-time threat monitoring
Encryption at rest (AES 256-bit) and in transit (TLS 1.2 + HTTPS)
Strict vulnerability management and access controls
Compliance You Can Trust
Built to help you meet your regulatory and governance responsibilities:
ISO/IEC 27001:2022 certified
Cyber Essentials certified
Aligned with the NCSC’s 14 Cloud Security Principles
Support for UK GDPR with clear data controller/processor responsibilities
Privacy practices and audit support built-in
Resilience You Can Rely On
Our software supports continuity even in times of disruption:
99.5% uptime, with plans to increase
Disaster recovery supported within UK regions
Rolling 7-day point-in-time recovery
Weekly, differential, and 10-minute log backups
Recovery Time Objective (RTO): 12 hours
Recovery Point Objective (RPO): 1 hour
Accessibility and Inclusion Built In
Security and compliance aren’t just about IT they’re about people. Iken Cloud ensures:
WCAG 2.2 AA compliant design for accessibility
Optimised for desktop, mobile, and tablet
Browser-based access with Single Sign-On (SSO)
“Iken’s IT Strategy provides the technology, capacity and security for long-term growth and leadership in centralised business information systems.”

Phil Coleman
Chief Information Officer

