Our platform, FTR Justice Cloud, meets or exceeds multiple government-grade and industry-recognized frameworks that safeguard justice data:
- NIST 800-53 Rev. 5 — A U.S. federal cybersecurity framework with more than 1,200 controls across encryption, identity management, logging, incident response, and zero-trust architecture. Federal compliance programs such as FedRAMP use NIST 800-53 Rev. 5 as the baseline for its security control guidance.
- SOC 2 Type 2 — An independent, time-bound audit verifying that For The Record maintains secure, reliable operations over an extended period—covering security, availability, confidentiality, processing integrity, and privacy.
- CJIS Security Policy — FBI-level requirements for handling criminal justice information, including encryption, access controls, audit logs, background checks, and signed security addenda.
- Cloud Security Alliance Cloud Controls Matrix (CCM) — A comprehensive cloud security framework with 197 controls across 17 domains, providing guidance on governance, risk management, data protection, and security responsibilities for cloud service providers and customers.
- UK Cyber Essentials — A UK government-backed certification ensuring basic cyber hygiene, covering access controls, firewalls, patch management, malware protection, and secure configuration of devices and software.
Together, these certifications demonstrate layered protection across business, technical, and justice environments.
