Tyk

Tyk uses ISO as a foundation as their business rapidly grows: A Case Study

Standards: ISO 9001, ISO 27001
Industry: Technology – software development

Introduction

Tyk Technologies Ltd. helps developers connect systems to systems. A major challenger in the API Gateway space, providing open source API Gateways, API Management Dashboards and an API Development Portal to a worldwide user base. The business is taking on the likes of Google and operate out of London, Singapore and the US. Security of the software code and SaaS hosting environment is absolutely paramount.

As the business expanded internationally, an integrated ISO 9001 and ISO 27001 management system provided the structured foundation needed to support quality, security and continued growth.

Approach and Implementation

twoSB guided Tyk to ISO 27001 and ISO 9001 certification. The rapid growth of the business and its internationally dispersed workforce presented unique challenges during the implementation, however the establishment of an information security framework helped Tyk identify and systematically mitigate the risks the organisation faces.

Building an information security framework

As Tyk expanded its operations across multiple countries, establishing an information security framework became an important part of supporting secure growth. Rather than introducing unnecessary complexity, twoSB worked with the business to develop practical ways of working that aligned with day-to-day operations while helping to identify, manage and reduce information security risks.

Results: Scalable quality management processes

As Tyk continued to grow, its quality management processes evolved alongside the organisation. Initially developed for a team of ten people, the systems were designed to scale, supporting consistent ways of working across an expanding international workforce without creating unnecessary bureaucracy.

First implementing the ISO 9001 and ISO 27001 systems when the organisation had ten team members, the system has had to grow and evolve as the number has surpassed 100.

The long-term value of these ISO management systems has been their ability to scale alongside the organisation.

Tyk’s COO commented “twoSB supported us through the implementation process, really taking the time to understand our business. Instead of putting documents in place that didn’t give our business any value, they worked with process owners across the organisation to develop meaningful and secure methods of working. ISO 27001 in particular can be confusing to implement without guidance. twoSB expedited the process for us, helping us to interpret the standard and how it applied to our business”.

Supporting long-term growth

For Tyk, certification was not the end goal but the foundation for continued growth. By embedding scalable quality and information security practices into day-to-day operations, the business established a framework that could evolve alongside its international expansion, supporting consistent ways of working, stronger governance and continued improvement as the organisation grows.