banner image
Press release

Grant Thornton Australia achieves ISO27001 certification

Grant Thornton today announced it has achieved ISO27001 certification as of February 2026. This milestone represents a multi-year journey to maturing the firm’s Information Security Management System (ISMS). 

This certification reflects Grant Thornton’s commitment to:

  • uplifting governance, risk management, and security policies to a consistent, firm wide standard
  • embedding security into day-to-day operations, technology, and third-party risk management
  • strengthening technical controls, monitoring, and incident response readiness
  • internal and external audits, evidence gathering, and continuous improvement
  • a strong culture of shared responsibility for information security.

This certification is globally recognised, providing reassurance to the firm’s clients and people around strong information security. It globally recognises Grant Thornton Australia as a firm committed to strong and sustainable uplift in governance, establishing a formal, structured risk-based approach to managing information security and operational resilience. 

Matthew Green, Grant Thornton Partner and ISO27001 expert said: “ISO 27001 certification is a mark of credibility and proves we hold ourselves to the same standard we advise our clients to meet by protecting their sensitive data supported by strong governance, tested controls, and continuous improvement. In an environment of increasing cyber risk, regulatory scrutiny and third-party risk, ISO 27001 certification also demonstrates our commitment that we don’t just talk about good security – we live it.”

Ben Swindale, Grant Thornton’s Chief Technology Officer said: “This certification is recognition of a significant piece of work that our teams have put in over the last few years to uplift our governance and controls to a high standard. Our clients are looking for independent validation that we are taking our responsibility in protecting their data seriously and wanting assurance that we are investing in our IT governance. It’s fantastic to have achieved this goal and I'd like to thank everyone that helped to achieve this result.”

The ISO27001 certification reinforces Grant Thornton’s reputation as a trusted, professional services firm with strong IT maturity, accountability and a long-term commitment to greater governance.

Copy text of article