PagerDuty logo

PagerDuty

Incident management and digital operations platform for IT teams.

✓ 6 of 32 frameworks
Security & General Standards
SOC 2 Type II

Listed on PagerDuty security page and assurance profile

SOC 3

Microsoft 365 app certification indicates SOC 3: No

SOC 1 Type II

Microsoft 365 app certification indicates SOC 1: No

ISO 27001 (Information Security Management)

Listed on PagerDuty security page and assurance profile

ISO 27017 (Cloud Security)

Microsoft 365 app certification indicates ISO 27017: No

ISO 27018 (Cloud Privacy)

Microsoft 365 app certification indicates ISO 27018: No

ISO 27701 (Privacy Information Management)
?

Not documented on public trust center

ISO 42001 (AI Management Systems)
?

Not documented on public trust center

ISO 9001 (Quality Management)
?

Not documented on public trust center

CSA STAR (Cloud Security Alliance)
?

Not documented on public trust center

HITRUST CSF

Microsoft 365 app certification indicates HITRUST: No

BSI C5 (German Cloud Security)
?

Not documented on public trust center

Privacy & Data Transfer
GDPR (EU)

Documented on PagerDuty GDPR approach page

CCPA / CPRA (California)
?

Not explicitly documented on public trust center

UK GDPR
?

Not explicitly documented

LGPD (Brazil)
?

Not documented on public trust center

PIPEDA (Canada)
?

Not documented on public trust center

DPDP Act (India)
?

Not documented on public trust center

PIPL (China)
?

Not documented on public trust center

EU-US Data Privacy Framework

Self-certified per privacy FAQ

Swiss-US Data Privacy Framework

Self-certified per privacy FAQ

Global CBPR (APEC)
?

Not documented on public trust center

Global PRP (APEC)
?

Not documented on public trust center

Industry & Government
HIPAA (US Healthcare)

Microsoft 365 app certification indicates HIPAA: No; no BAA offered

PCI DSS (Payment Card Industry)
?

Data centers comply but explicit certification not documented; Microsoft certification says N/A

FedRAMP (US Federal)

FedRAMP Moderate authorized, verified on marketplace.fedramp.gov

StateRAMP / TX-RAMP (US State)
?

Not documented on public trust center

DORA (EU Finance)
?

Not documented on public trust center

CJIS (US Law Enforcement)
?

Not documented on public trust center

FINRA (US Broker-Dealers)
?

Not documented on public trust center

IRAP (Australian Government)
?

Not documented on public trust center

Emerging & Strategic
NIST CSF (Cybersecurity Framework)
?

Not documented on public trust center

Data last verified: September 2026

Is this data outdated?

Spotted an error or a recent change in PagerDuty's posture? Submit a correction.

Submit a correction →

Work at PagerDuty?

Claim this profile to verify and enrich your compliance data.

Claim this profile →
← All DevOps & Monitoring tools

Data sourced from public trust centers. Not legal or compliance advice.

Logos and trademarks are property of their respective owners. Use does not imply endorsement, affiliation, or sponsorship.

© Compliance Posture 2026