Are you a NorthC customer and need a certificate?
You can request it with reporting rights via the myNorthC portal.
About us
Certifications and memberships
Our certifications guarantee the quality and continuity of our services. We are audited annually by independent auditors, ensuring you can always rely on dependable and high-quality service.
Certifications
Our certifications ensure and demonstrate the quality and continuity of our services.

ISO 9001 – Quality Management System
Our ISO 9001 certification confirms that we operate under a high-quality management system. This system ensures the quality of our services, promotes continuous improvement and enhances customer satisfaction. Every year, an independent party audits to ensure we meet these strict standards, guaranteeing consistent and reliable quality.
This certificate is valid in Aalsmeer, Almere, Amsterdam 1, Delft, Eindhoven 1 & 2, Groningen, Oude Meer, Nieuwegein, Rotterdam Waalhaven, Rotterdam Zestienhoven, Munich 1, and Nuremberg.

ISO 14001 – Environmental Management
With ISO 14001, we demonstrate that our environmental policy complies with international standards and regulations. This certification ensures we manage ecological risks and continuously improve. At NorthC, we map out our environmental impact and set clear goals, including waste separation, energy saving, and water management. A key element is reusing residual heat: internally, we use this to preheat our backup power generators, and externally, we exchange energy with the surrounding area. In return, we receive cold water to cool our data halls.
This certificate is valid in Aalsmeer, Almere, Amsterdam 1, Delft, Eindhoven 1 & 2, Groningen, Oude Meer, Nieuwegein, Rotterdam Waalhaven, and Rotterdam Zestienhoven.

ISO 27001 – Information Security
ISO 27001 protects all information within an organisation, from personal and business information to financial and client data. This standard sets precise requirements for identifying, managing, monitoring, assessing, and continually improving information security risks. Our Information Security Management System (ISMS) documents all processes and measures, ensuring optimal security, even during break-ins or cyber-attacks.
This certificate is valid in Aalsmeer, Almere, Amsterdam 1, Delft, Eindhoven 1 & 2, Groningen, Oude Meer, Nieuwegein, Rotterdam Waalhaven, Rotterdam Zestienhoven, Munich 1, and Nuremberg.

ISO 22301 – Business Continuity
ISO 22301 represents business continuity, essential for a data center that must remain available under all circumstances, even during emergencies. At NorthC, we ensure continuity through extensive redundancy: all our data centers meet the Tier 3 standard. Our data center in Eindhoven was initially built to Tier 4 standards, enabling us to guarantee the operational availability of your IT infrastructure in any situation.
This certificate is valid in Aalsmeer, Almere, Amsterdam 1, Delft, Eindhoven 1 & 2, Groningen, Oude Meer, Nieuwegein, Rotterdam Waalhaven, Rotterdam Zestienhoven.

PCI DSS – Credit Card Transactions
PCI DSS stands for Payment Card Industry Data Security Standard, the international security standard for safe credit and debit card transactions. This standard, developed by payment card companies like Visa Inc., Mastercard, JCB, American Express, and Discover Financial Services, helps protect payment card data from misuse and fraud. Companies that store, process, or transmit credit card or international debit card data must comply with the PCI DSS standard annually, which is especially important for customers in the financial sector and large online shops. At NorthC, we ensure compliance through layered physical security and a strict access policy, including biometric scanners, 24/7 security, and CCTV monitoring inside and outside.
This certificate is valid in Aalsmeer, Almere, Amsterdam 1, Delft, Eindhoven 1 & 2, Groningen, Oude Meer, Nieuwegein, Rotterdam Waalhaven, Rotterdam Zestienhoven.

SOC 2 Type II
SOC 2 Type II assesses the effectiveness of our security and control measures over a longer, predefined period. This audit is based on the Trust Services Criteria. These include Security and, where applicable, Availability, Processing Integrity, Confidentiality, and Privacy. The audit evaluates whether our processes and controls for business-critical IT services are consistently applied. This includes, among other things, controls for the physical security of our data centers, employee background screening, access management, incident handling, and the application of privacy and data retention guidelines.
This report has been prepared for our data centers in Aalsmeer, Almere, Amsterdam 1, Delft, Eindhoven 1 & 2, Groningen, Oude Meer, Nieuwegein, Rotterdam Waalhaven, and Rotterdam Zestienhoven.

ISAE 3402 Type II Assessed
The International Standard for Assurance Engagements (ISAE) 3402 checks the information security of outsourced, business-critical processes, such as IT processes. ISAE evaluates whether agreements with third parties are upheld, for example, in the physical security of our data centers, staff screening, and the legal retention period of data.
This statement applies to our data centers Munich 1 and Nuremberg.

DIN EN 50600 – Cat III
Our data centers in Germany are certified according to DIN EN 50600 (CAT. III) by TÜV Rheinland – the industry standard for maximum reliability and security in data center technology. This certification confirms that your data center complies with the stringent requirements of DIN EN 50600, covering all relevant aspects of design, construction, operation, and maintenance. With this certification, you demonstrate to your customers and business partners that your data center meets the highest standards, ensuring excellent performance and safety.
This certificate is valid in Munich 1 and Nuremberg.

ISO 20000-1 – IT Service Management
ISO 20000-1:2018 is an international standard for IT service management that specifies the requirements for developing, implementing, monitoring, maintaining, and improving an IT service management system. This certification proves that a provider has implemented appropriate IT service management procedures to deliver efficient and reliable IT services that are regularly monitored, evaluated, and improved.
This certificate is valid in Munich 1 and Nuremberg

EcoVadis Silver Medal – Sustainability

Dutch Data Center Association (DDA)

Dutch Cloud Community (DCC)
