By partnering with A-LIGN, Anthology is strengthening data privacy and security for our customers.
Anthology has a steadfast commitment to information security, compliance, and operational integrity, while continually building trust with all our
customers and stakeholders. To bolster these efforts, we partner with A-LIGN to achieve SOC attestations, ISO/IEC certifications, and StateRAMP
and FedRAMP Authorizations.
The Challenge
Customers that Require the Highest Level of Security Compliance
Previously, Anthology was leveraging multiple audit firms to support numerous compliance assessments. It was costly and inefficient to manage frequent audits with multiple providers and overlapping cycles. Gathering evidence and documentation was time consuming, making it difficult to maintain a unified compliance strategy across different auditors and causing this method to become less and less sustainable.
Upon merging with Blackboard in 2021, Anthology developed a certification roadmap for us to reach the new heights in security assurance across our combined SaaS portfolio that we wanted to provide and that our customers—especially our government customers—increasingly required. Anthology serves many government customers, including the Department of Defense and intelligence agencies, and protecting their sensitive data—including learner information and the content of courses—from sophisticated cyberthreats like ransomware and phishing is critical. We provide transparency and build trust with these customers by adhering to FedRAMP, StateRAMP, SOC 2, and multiple ISO frameworks.
In addition, Anthology upholds stringent data privacy standards using GDPR as its global baseline, and we leverage advanced technologies to ensure proactive threat identification and mitigation. To fulfill all these demands, we knew that we required an experienced and reputable provider to consolidate audit efforts across a variety of attestations and certifications.
The culture of security needs to be there before, during, and after the audit. This is how our entire organization comes together to achieve these credentials for the benefit of our customers. From sales to engineering to support, we are all working together to exceed customer expectations for our offerings and security is paramount in that regard.”
Nicole Anderson, Director of Governance, Risk, and Compliance, Anthology
The Solution
Partnering with A-LIGN to Provide Not Only Security, But Peace of Mind
Anthology views A-LIGN as not just an audit provider, but as a true compliance partner. Working with A-LIGN, we have a streamlined, cost-effective, high-quality approach to achieving and maintaining critical certifications.
Thanks to careful planning and clear communication, the audit process has been smooth and effective. Working with A-LIGN, we were able to simplify the collection of audit documents to reduce overlap, improve accuracy, and be better prepared.
Anthology leverages A-LIGN’s compliance management platform, A-SCEND, to centralize evidence collection and consolidate audit artifacts, reducing time spent on evidence collection by 20% and reusing evidence across frameworks. This builds trust with customers and stakeholders, validating Anthology’s adherence to globally-recognized standards for managing risks, protecting sensitive data, and ensuring strong internal controls.
Anthology values A-LIGN’s collaborative approach that provides tailored solutions and quick resolution of queries. Bundling services across frameworks has also provided cost efficiencies and reduced repetition. By using a single audit provider for all our federal and commercial assessments, we ensure that we provide high-quality audit reports that accurately communicate our secure systems to not only our government agency customers, but our customers across all sectors of education.
With a renewed company vision, we have refined our cybersecurity compliance strategy to align with growing demands of our customers, industry trends, and regulatory requirements. And, last but certainly not least, to give our customers peace of mind that their data is secure and private, allowing them to spend their valuable time and resources on other endeavors.
Looking Towards the Future
By fostering a strong security culture, Anthology maintains security across all offerings, ensuring credential validity for customers and compliance with evolving regulations.
To support our government customers, Anthology continues to work with A-LIGN on additional federal assessments to meet expanding security requirements like FedRAMP Moderate, safeguarding personal information and sensitive materials. Best of all, every one of our customers across education benefits from this commitment to and investment in security and privacy, from superior engineering to process excellence. And what’s more, continuous compliance programs and client feedback through the Anthology Idea Exchange keep our offerings at the forefront of industry trends, ensuring success and trust for years to come.
To learn more about how we’re approaching data privacy and security, visit the Anthology Trust Center.
We chose A-LIGN as our auditor because of their deep experience and recognized expertise in FedRAMP, StateRAMP, ISO and SOC, offering end-to-end support for our compliance efforts. A-LIGN has responsive and knowledgeable teams which ensures quick resolution of queries or challenges during the audit process as well as ongoing support beyond the audit.”
Nicole Anderson, Director of Governance, Risk, and Compliance, Anthology