Security Standards

Clients expect us to minimize exposure in the areas of IT security, cybersecurity and privacy protection, and to maintain strict compliance. We work continuously to meet and exceed these expectations.

Computer chip

Our Commitment

Data governance and protection are business imperatives. Organizations of all sectors and sizes must manage the security of financial information, intellectual property, employee data and information entrusted to third parties. Designing response plans, and addressing litigation risks and regulatory obligations, are also critical to security.

ISO

ISO standards, developed and published by the International Organization for Standardization, are globally recognized benchmarks of best practices. Organizations that achieve ISO certification demonstrate a clear commitment to upholding the highest standards of quality, care and operational excellence.

Bennett Jones' information systems in support of all our Canadian operations (in Calgary, Edmonton, Montreal, Ottawa, Toronto and Vancouver) are assessed and approved in independent third-party audits, and are deemed compliant with the following standards and guidelines:

  • ISO 27001:2022
    ISO 27001 is the world's best-known standard for information management systems. Bennett Jones has been ISO 27001–certified since 2016.
  • ISO 22301:2019
    ISO 22301 specifies comprehensive requirements for business resilience and protection. The firm has been ISO 22301–certified since 2024.
The Bennett Jones Story

At Bennett Jones, legal solutions are our starting point. What drives us forward is knowing our clients inside and out—their ambitions, obstacles and success metrics.

For more than a century, we have shaped outcomes that matter in business, in law and in the broader Canadian landscape. And our commitment extends beyond legal matters: we invest deeply in the communities in which we live and work.