We take the safety of your information and the quality of your care seriously. Here is how we make sure of that.
We follow recognised standards to keep your information safe, deliver high-quality care, and look after the environment. Independent experts regularly check that we meet these standards. You can read the details below.
What is an ISO certification?
ISO standards are internationally recognised rules for how organisations should work. They cover things like keeping data safe, managing quality, and looking after the environment. To earn an ISO certification, an organisation has to be independently checked by approved experts. These checks happen regularly, so standards have to be maintained over time.
We hold three ISO certifications. Each one is accredited by UKAS (the United Kingdom Accreditation Service), the official UK body that approves certification organisations.
Our ISO certifications

ISO 27001: Information Security
The most widely used international standard for keeping information safe.
We have clear rules, checks and systems to protect your personal data. We train our staff, secure our systems and have plans in place to prevent data being lost or stolen.
Verify: british-assessment.co.uk

ISO 9001: Quality Management
The international standard for quality. The way we manage your care, from receiving your referral to completing your treatment, is regularly checked and improved.
We listen to feedback and use it to make our services better. Our certification covers how we handle referrals, arrange specialist assessments and tests, and coordinate your care throughout.
Verify: british-assessment.co.uk

ISO 14001: Environmental Management
The international standard for managing environmental impact. Because most of our appointments happen by video or phone, patients do not need to travel to hospital. This already reduces our environmental footprint.
We also work to reduce waste, save energy and buy responsibly. We have a formal plan to reach net zero carbon, in line with NHS targets.
View our Carbon Reduction Plan | Verify: british-assessment.co.uk
Cyber security

Cyber Essentials Plus
A UK Government-backed security scheme. Our computer systems have been independently tested and shown to be well protected against the most common types of cyber attack.
We hold the higher-tier Plus certification, meaning our defences have been verified through a hands-on technical audit.
Verify: iasme.co.uk
NHS data security
Data Security and Protection Toolkit (DSPT)
The NHS check that every organisation handling patient data has the right protections in place. We have passed this check with the highest possible rating: Standards Exceeded.
Verify: dsptoolkit.nhs.uk
Risk management

ISO 31000: Risk Management
The international standard for risk management. Our risk manager holds a personal ISO 31000 certification (ID #41985). The person leading our approach to risk has been trained and assessed to a recognised global standard.
This means we take a structured approach to identifying and managing risks, helping us protect patients, staff and the services we deliver.
What this means for you
Your data is protected. We meet the highest recognised standards for information security, independently tested and verified.
Your care is quality-checked. Every step of your pathway, from referral to treatment, is covered by our quality certification.
We look after the environment. Our virtual-first model reduces travel, and we are working towards net zero carbon.
Risks are managed properly. A qualified risk manager leads a structured approach to keeping patients, staff and services safe.
For more about how we protect your data and deliver quality care, visit our Trust Centre.

