McLean, VA, August 2026 – The Groove, a Workday services and technology partner that helps organizations modernize operations and maximize the value of their Workday investments, today announced it has successfully achieved SOC2 and ISO/IEC 27001 certification as of July 22nd, 2026.
The ISO/IEC 27001 certification was conducted by A-LIGN, a leading technology-enabled security and compliance partner trusted by more than 4,000 global organizations to help mitigate cybersecurity risks. A-LIGN is an ISO/IEC 27001 certification body accredited by the ANSI National Accreditation Board (ANAB) and United Kingdom Accreditation Service (UKAS) to perform Information Security Management System (ISMS) certifications.
"Security is foundational to everything we do at The Groove. Achieving ISO/IEC 27001 certification validates the investments we have made in our people, processes, and technology to protect client information and reduce risk. As organizations continue to modernize their operations and adopt emerging technologies, our clients can be confident that security, compliance, and trust remain at the core of every engagement."
– Ofer Benyona, Chief Technology & Information Security Officer, The Groove
ISO/IEC 27001 is the internationally recognized standard for information security management systems, providing a framework for organizations to identify, manage, and continuously improve information security practices.
"Congratulations to The Groove for earning ISO/IEC 27001 certification, a widely recognized signal of trust and security,"
– said Steve Simmons, COO of A-LIGN.
"It's great to work with organizations like The Groove, who understand the value of expertise in driving an efficient audit and the importance of a high-quality final report."
Achieving ISO/IEC 27001 certification demonstrates The Groove's ongoing commitment to maintaining a robust information security program and protecting the confidentiality, integrity, and availability of client data. The certification reflects the organization's dedication to implementing industry best practices, managing risk proactively, and continuously improving security controls across its business operations.