Compliance
Our team works to expand coverage to help our customers and business partners meet compliance needs.Our values. Our foundation.
Jamf’s Code of Conduct establishes the foundation for our choices and actions. The guidelines provided within help our employees and executives make decisions that are aligned with our values. This foundation is the core of our culture.
In addition to our Code of Conduct, our Compliance Program provides ongoing education to our employees on company-wide policies, regulatory requirements, and our expectations for employee behavior. Training topics include: Acceptable Use, Information Security, Global Data Privacy, Anti-Corruption and Anti-Harassment.
Compliance initiatives
Risk Management
Jamf’s integrated enterprise risk management program improves decision making in governance, strategy, objective-setting, and day-to-day operations. Our program is modeled after ISO 27000:2018 and the COSO framework. We perform interviews with management to identify new risks, ongoing monitoring, and remediation efforts.
Modern Slavery Statement
At Jamf we have a zero-tolerance policy for modern slavery of any kind. We are committed to acting ethically and with integrity in all our business dealings and relationships. We are actively monitoring our business relationships and enforcing effective systems/controls to ensure modern slavery is not taking place anywhere in our own business or in any of our supply chains.
Partner Code of Conduct
Jamf has cultivated a culture of trust, integrity and respect among our employees, customers and partners. We adhere to the highest moral, ethical, and legal standards as we continue to build an environment that promotes our values of selflessness and relentless self-improvement. Our partners play an important role in our efforts to help organizations succeed with Apple. That’s why we are committed to working with partners who share our values and understand the importance of conducting business ethically.
Vendor Management
Our vendor partners undergo a thorough security and compliance assessment prior to working with us. Ongoing due diligence including a review of the vendor’s SOC1, SOC2, and/or ISO 27001 certifications are performed based on risk assessment results. In the event these reviews have material findings, we work closely with the vendor to track remediation efforts until the issue has been resolved.