Certifications
Let CDW focus on the IT business, so you can grow yours. Our framework is built based on the highest standards in the industry.
We take our business as seriously as we take yours. Our framework is built based on the highest standards in the industry.
NIST Cybersecurity Framework (CSF)
This Framework consists of standards, guidelines and best practices to manage cybersecurity-related risk. The Cybersecurity Framework’s prioritized, flexible, and cost-effective approach helps to promote the protection and resilience of critical infrastructure and other sectors important to the economy and national security.
Originally published in 2014, this Framework for Improving Critical Infrastructure Cybersecurity has relied upon multiple public workshops, Requests for Comment or Information, and thousands of direct interactions with stakeholders from across all sectors of the United States along with many sectors from around the world.
PCI DSS
The Payment Card Industry Data Security Standard (PCI DSS) is an information security standard administered by the PCI Security Standards Council, which was founded by American Express, Discover Financial Services, JCB International, MasterCard Worldwide and Visa Inc.
PCI DSS applies to all entities that store, process or transmit cardholder data (CHD) or sensitive authentication data (SAD), including merchants, processors, acquirers, issuers, and service providers. The PCI DSS is mandated by the card brands and administered by the Payment Card Industry Security Standards Council.
System and Organization Controls (SOC)
CDW has compliance with both the SOC 1 and SOC 2 audits. A SOC 2 Type 2 report is an internal controls report capturing how a company safeguards customer data and how well those controls are operating. These reports are issued by independent third party auditors covering the principles of Security, Availability, Confidentiality and Privacy. Additionally, A SOC1 Type 2 report is an internal controls report, evaluating the effectiveness of implemented controls for financial reporting. These audits are completed annually and validate our commitment to delivering high quality, secure services to our clients.