Raccoon Gang, an EdTech and eLearning development company, announced it has achieved ISO/IEC 27001:2022 certification, the international standard for information security management systems. The certification confirms that Raccoon Gang's processes for protecting client and learner data meet globally recognized benchmarks for confidentiality, integrity, and availability.
The certification comes as many colleges and universities place increased emphasis on evaluating the security practices of learning technology vendors during procurement and vendor assessments. Institutions are often asked to demonstrate independently audited security controls alongside internal security policies.
"Higher education IT leaders are asking harder questions about data handling than they were even a year ago, and rightly so," said Daryna Gornitska, CEO of Raccoon Gang. "ISO/IEC 27001:2022 certification means our information security management system has been independently audited against a recognized international standard — not just documented internally. For institutions evaluating a development or integration partner, that distinction matters."
The ISO/IEC 27001:2022 standard requires organizations to maintain a systematic, risk-based approach to information security, covering areas such as access control, data encryption, incident response, vendor risk management, and continuous monitoring. Certification is granted following an independent audit by an accredited certification body and requires ongoing surveillance audits to maintain compliance.
For Raccoon Gang, which works with higher education institutions and enterprises on LMS migrations, custom integrations, and platform development, the certification formalizes information security practices the company has maintained as its projects have expanded in scale and complexity.
Raccoon Gang has delivered LMS engineering and instructional design projects for institutions and enterprises including Harvard University, NASA, Microsoft, and n8n. The company says the certification will now be a standard part of its vendor security documentation provided during procurement and RFP processes.
The certification also comes as colleges and universities continue to strengthen vendor risk management practices, particularly for technology providers that process institutional and student data or integrate with student information systems, HR platforms, and other enterprise software.
Raccoon Gang said its information security management system now covers areas including access control, data encryption, incident response planning, and vendor risk assessment, and will be subject to periodic surveillance audits to maintain certification. The company noted that ISO/IEC 27001:2022 is one of the most widely recognized international frameworks for information security management, used across sectors including finance, healthcare, and government technology, in addition to education.
Gornitska said the certification reflects a broader shift in how the company approaches security as it takes on larger, more complex institutional projects. "As we've moved into larger LMS migrations and deeper enterprise integrations, the volume and sensitivity of the data we handle has grown substantially," she said. "Certification gives that process a formal, auditable structure instead of relying on internal policy alone."
Raccoon Gang said its security and compliance documentation, including certification details and audit scope where appropriate, is available to institutions during procurement and vendor evaluation processes.
Founded in 2015, Raccoon Gang is an ISO/IEC 27001:2022-certified EdTech development firm with a team of more than 150 digital education and software engineering professionals. Having delivered more than 200 international projects, the company specializes in open-source and proprietary LMS development, hosting, custom integrations, and instructional design for higher education and corporate clients worldwide.