Certifications & Compliance
A&T Systems, Inc. maintains independent certifications, assessments, appraisals, and attestations demonstrating our commitment to quality management, information security, IT service management, cybersecurity, operational excellence, and the protection of customer information.
Our compliance program supports the delivery of secure, reliable, and high-quality information technology, cloud, telecommunications, managed services, and professional services to federal, state, local, education, and commercial customers.
ISO 9001:2015
Quality Management Systems
A&T maintains ISO 9001:2015 certification supporting a structured quality management system focused on consistent service delivery, customer satisfaction, continual improvement, and effective organizational processes.
ISO/IEC 27001:2022
Information Security Management Systems
A&T maintains ISO/IEC 27001:2022 certification for its information security management system, supporting the protection of information through risk management, security controls, governance, monitoring, and continual improvement.
ISO/IEC 20000-1:2018
IT Service Management Systems
A&T maintains ISO/IEC 20000-1:2018 certification supporting the planning, delivery, operation, monitoring, and continual improvement of information technology services and service-management processes.
CMMC Level 2
Cybersecurity Maturity Model Certification
A&T has achieved CMMC Level 2 certification following an assessment performed by an authorized Certified Third-Party Assessment Organization (C3PAO), supporting A&T’s ability to protect Controlled Unclassified Information within its assessed environment.
CMMI SVC-ML3-2025
Capability Maturity Model Integration – Services
A&T has achieved CMMI Services Maturity Level 3, demonstrating defined and institutionalized processes for managing and delivering services consistently across the organization.
SOC 2® Type 2
Independent Service Organization Controls Examination
A&T completed an independent SOC 2 Type 2 examination covering controls relevant to all five AICPA Trust Services Categories: Security, Availability, Processing Integrity, Confidentiality, and Privacy.
Commitment to Continuous Compliance
A&T’s certification and compliance programs are supported by ongoing governance, risk management, security monitoring, vulnerability management, access control, business continuity, incident response, internal review, and continuous-improvement activities.
Supporting certification or assessment documentation may be made available to customers and authorized parties when appropriate and subject to applicable confidentiality and distribution requirements.