
Sophos Trust Center

Recent updates
CISO Playbook: North Korean IT Workers
Advisory: Apache Parquet Vulnerability (CVE-2025-30065)
INC-2025-003: March 2025 Internal Sophos Phishing Attempt
Trust is earned through transparency. Explore how we build, protect, and improve the products and services you rely on.
Compliance and certifications
Sophos follows leading security and compliance standards to help you meet regulatory requirements and stay audit-ready.








Transparent. Always.
Trust must be earned and verified, which is why transparency is a longstanding cornerstone of Sophos's philosophy guiding how we share security insights, collaborate, and continuously improve.
Open security disclosures
We publish timely and detailed information about security measures, vulnerabilities, incidents, and policies to relevant stakeholders.
Shared threat intelligence
We share threat intelligence with industry partners and international government agencies, documenting security protocols and communicating openly about breaches or risks.
Continuous improvement
We are open about the weaknesses we have uncovered. This allows others to benefit from what we've learned on our journey to continuously improve the quality and reliability of our products and services.

Transparency in practice: Pacific Rim
Discover how Sophos X-Ops identified a targeted campaign by Chinese nation-state actors—turning the threat into an opportunity to strengthen our defences and inform the security community.

"This is where we begin to make a difference in the world. To not only keep our customers more secure, but to demonstrate to them how we're keeping them more secure."
Joe Levy, Sophos Chief Executive Officer

