Source
Audit logs, policies & reporting — found from sitemap — Keeper
Checked for Keeper on 1 Oct 2026
- Page
- https://www.keepersecurity.com/compliance/ISO27001/
- Checked
- 1 Oct 2026, 17:52 UTC
- How we may use it
- Public page, crawling permitted
Technical details
- type
- page
- http status
- 200
- content hash
- sha256:51d8b073b459ee87cd8858f7900c36b1568419ab9c35dc1bfd666faf5e3e1d1c
- permission
- robots_ok
- screenshot
- Screenshot on file (internal exhibit, not published)
Cited by
Facts read from this source
-
ISO 27001 certified Report an error
“Keeper is ISO 27001 certified and audited annually by accredited third-party assessors.”
-
ISO 27001 certified controls leverage Report an error
“Organizations using Keeper can leverage Keeper's certified controls as part of their own ISMS implementation.”
-
Zero knowledge encryption Report an error
“Keeper protects all stored credentials and secrets with zero-knowledge encryption, meaning Keeper's servers hold only encrypted data and Keeper itself cannot access vault contents.”
-
Tls version Report an error
“All data in transit is protected using TLS 1.2 or higher.”
-
Audit logs Report an error
“Comprehensive audit logs support accountability, traceability and continuous improvement activities required by an ISMS.”
-
Rbac Report an error
“Keeper supports a risk-based ISMS by enabling least-privilege access, separation of duties and strong authentication through Role-Based Access Control (RBAC), centralized policy enforcement and integration with enterprise identity providers.”
-
ISO control a 5 3 Report an error
“Keeper enables administrative role separation so security administrators can manage policies and users without access to sensitive vault contents.”
-
ISO control a 5 15 Report an error
“Keeper supports access control policies through RBAC, shared folder permissions and centralized enforcement of access rules across users and systems.”
-
ISO control a 5 16 Report an error
“Keeper supports identity lifecycle management through SCIM provisioning, SSO integration and automated deprovisioning, ensuring user identities are managed consistently across the organization.”
-
ISO control a 5 18 Report an error
“Keeper supports access rights management by enabling administrators to provision, modify and revoke user access to credentials and secrets in accordance with access control policies.”
-
ISO control a 8 2 Report an error
“KeeperPAM enables controlled access to privileged credentials using just-in-time access, workflow-based approvals and automated password rotation.”
-
ISO control a 6 7 Report an error
“Keeper provides secure access to credentials and secrets without exposing passwords or relying on traditional VPN-based access models.”
-
ISO control a 8 15 Report an error
“Keeper generates detailed audit logs for authentication events, credential access, sharing actions and administrative changes.”
-
ISO control a 8 16 logging Report an error
“Keeper audit logs can be exported or integrated with SIEM platforms to support continuous monitoring and incident detection.”
-
ISO control a 8 24 Report an error
“Keeper encrypts all credentials and secrets using a zero-knowledge architecture with AES-256 and RSA-2048, with cryptographic modules validated to FIPS 140-3 by the NIST Cryptographic Module Validation Program (CMVP).”
-
Quantum resistant cryptography Report an error
“Keeper further enhances its security posture through the adoption of Quantum-Resistant Cryptography (QRC) to mitigate emerging post-quantum threats.”
-
ISO control a 5 14 Report an error
“Keeper protects data in transit using TLS 1.2+ with strong cipher suites.”
-
ISO control a 8 16 monitoring Report an error
“Keeper identifies and logs unauthorized access attempts and policy violations within the vault environment.”
-
Keeperai Report an error
“KeeperAI analyzes session activity and behavioral patterns to support security event assessment, flagging anomalous activity for review and enabling security teams to evaluate and respond to potential incidents.”
-
ISO 27001 scope limitation Report an error
“Note: Keeper addresses the technical controls dimension of ISO 27001. A complete ISMS implementation also requires governance documentation, risk assessment processes, policy frameworks and physical and human resources security controls that fall outside Keeper's scope.”
-
Fips 140 3 Report an error
“with cryptographic modules validated to FIPS 140-3 by the NIST Cryptographic Module Validation Program (CMVP)”
Scores citing this record
- The CISO Encryption model & independent audits
- The CISO SSO, directory sync & provisioning
- The CISO Audit logs, policies & reporting
- The Compliance Auditor Encryption model & independent audits
- The Compliance Auditor SSO, directory sync & provisioning
- The Compliance Auditor Audit logs, policies & reporting
- The DevOps Engineer Encryption model & independent audits
- The DevOps Engineer Audit logs, policies & reporting
- The Identity Engineer Encryption model & independent audits
- The Identity Engineer SSO, directory sync & provisioning
- The Identity Engineer Audit logs, policies & reporting
- The Skeptic Encryption model & independent audits
- The Skeptic SSO, directory sync & provisioning
- The Skeptic Audit logs, policies & reporting
- The SME Owner Encryption model & independent audits
- The SME Owner SSO, directory sync & provisioning
- The SME Owner Audit logs, policies & reporting