# Kaspersky Global Transparency Initiative Kaspersky Global Transparency Initiative (GTI) is a comprehensive program launched in 2018 to foster digital trust and accountability in cybersecurity. The initiative provides stakeholders — enterprise customers, government agencies, regulators, and security researchers — with actionable tools to verify the reliability of Kaspersky products and engineering practices. The GTI website documents the initiative's history, milestones, and ongoing activities through an interactive presentation, a timeline map, and a news archive covering more than 50 announcements from 2018 to 2025. Official website: https://gti.kaspersky.com Publisher: Kaspersky ## Mission The mission of Kaspersky Global Transparency Initiative is to enable trust through verifiable transparency by: - Relocating cyberthreat-related data processing to Switzerland under strict data protection regulations - Operating a global network of Transparency Centers for independent review of source code, threat detection rules, and antivirus builds - Publishing biannual Transparency Reports on law enforcement requests and user data inquiries - Demonstrating product integrity through regular third-party audits (SOC 2, ISO/IEC 27001, Common Criteria) - Rewarding coordinated vulnerability disclosure through an expanded Bug Bounty Program (up to $100,000) - Training government and enterprise stakeholders through the Cyber Capacity Building Program ## Six Key Pillars ### Transparency Centers Transparency Centers are trust-building facilities for Kaspersky's trusted partners, customers, and regulators. Visitors can review source code, software updates, threat detection rules, and results of independent audits. The network spans Europe, APAC, Latin America, Africa, and the Middle East. Transparency Center locations documented on this site include: Zurich, Madrid, Kuala Lumpur, São Paulo, Singapore, Tokyo, Rome, Utrecht, Riyadh, Kigali, Istanbul, Seoul, and Bogota. Note: the interactive map also marks other cities for non-TC events (for example Frankfurt, Toronto, and Moscow for ISO 27001 data center certification; Paris for the Paris Call consultation; Katowice for a UN Internet Governance Forum workshop). More information: https://www.kaspersky.com/transparency-center ### Data Relocation Part of Kaspersky's data-processing infrastructure was migrated to Zurich, Switzerland. This infrastructure processes malicious and suspicious files voluntarily shared by users of Kaspersky products across Europe, the Americas, the Middle East, and countries in the Asia-Pacific region. Switzerland was chosen for its stringent data protection regulations. Asia-Pacific countries covered include: Australia, New Zealand, Japan, Bangladesh, Brunei, Cambodia, India, Indonesia, South Korea, Laos, Malaysia, Nepal, Pakistan, Philippines, Singapore, Sri Lanka, Thailand, and Vietnam. ### Transparency Reports Released every six months, transparency reports include: - Law Enforcement and Government Requests report - User Data Requests report Reports help customers and users understand how Kaspersky responds to data requests and its approach to data security and privacy. Reports are published on the Kaspersky transparency center portal. ### Independent Audits Kaspersky regularly demonstrates the reliability and integrity of its engineering practices through independent audits: - Service Organization Controls (SOC) 2 — audit of controls protecting the antivirus database development process - ISO/IEC 27001 — international standard for information security management systems - Common Criteria for Information Technology Security Evaluation (CC) SOC 2 information: https://www.kaspersky.com/about/compliance-soc2 ISO 27001 information: https://www.kaspersky.com/about/iso-27001 ### Bug Bounty Program As part of the GTI, Kaspersky extended its Bug Bounty Program to include rewards of up to $100,000 for the discovery and coordinated disclosure of severe vulnerabilities. The company supports the Disclose.io framework, providing Safe Harbor for vulnerability researchers. Kaspersky also published Ethical Principles for Responsible Vulnerability Disclosure. ### Cyber Capacity Building Program Dedicated security training designed to help companies, government organizations, and academia develop practical tools and knowledge for security assessments of software products. Available in online and offline formats to increase cyber-resilience and protect against ICT supply chain threats. Program information: https://www.kaspersky.com/capacity-building ## Main Sections ### Home https://gti.kaspersky.com/en/ Interactive scroll presentation introducing the Global Transparency Initiative. Covers the six key pillars, partner testimonials from government cybersecurity agencies (NCSC Vietnam, CERT-In India, BSSN Indonesia, NCSA Thailand, Boğaziçi University Türkiye), and a contact form for enterprise inquiries. ### Interactive Map https://gti.kaspersky.com/en/map Timeline map visualizing GTI milestones from 2018 onward. Events are organized by year and geographic location, covering Transparency Center openings, data relocation milestones, audit completions, transparency report releases, and other GTI activities. Includes list and map view modes. ### News Archive https://gti.kaspersky.com/en/map?drawer=news-list Chronological archive of GTI-related announcements and press releases. Each article has a dedicated page at https://gti.kaspersky.com/en/{slug}. News is categorized by pillar: Transparency Centers, Data relocation, Transparency reports, Independent audits, Bug Bounty Program, Cyber Capacity Building Program, and Other. ## Flagship Milestones ### First Transparency Center in Zurich (2018) https://gti.kaspersky.com/en/kaspersky-opens-first-transparency-center-in-zurich Kaspersky opened its first Transparency Center in Zurich, Switzerland, alongside the start of data processing for European users. ### Data Relocation to Switzerland (2018) https://gti.kaspersky.com/en/kaspersky-relocates-cyberthreat-data-storage-and-processing-to-switzerland Relocation of cyberthreat-related data storage and processing to Zurich data centers. ### Completion of Data Relocation (2020) https://gti.kaspersky.com/en/kaspersky-completes-relocation-of-data-processing-and-data-storage-announced-in-november-2018 Completion of relocation for users in the EU, Canada, United States, and Asia-Pacific countries (November 2020). ### Transparency Center Network Expansion https://gti.kaspersky.com/en/kaspersky-expands-its-network-of-transparency-centers-opening-three-new-facilities https://gti.kaspersky.com/en/kaspersky-expands-its-network-of-transparency-centers-opening-two-new-facilities Multiple expansions of the Transparency Center network across global regions. ### Remote Access to Transparency Center Services https://gti.kaspersky.com/en/kaspersky-enables-remote-access-to-transparency-center-services Remote review capabilities for stakeholders unable to visit physical centers. ### Software Bill of Materials (SBOM) https://gti.kaspersky.com/en/kaspersky-announces-software-bill-of-materials-available Kaspersky provides customers and partners access to SBOM documentation for software transparency and ICT supply chain risk management. ### First Transparency Report (2021) https://gti.kaspersky.com/en/kaspersky-releases-its-1st-transparency-report Publication of the first Transparency Report covering law enforcement, government, and user data requests for 2020 and H1 2021 (October 2021). ### SOC 2 Audits https://gti.kaspersky.com/en/kaspersky-completes-the-service-organization-control-for-service-organizations-type-1-audit-successfully https://gti.kaspersky.com/en/kaspersky-passes-the-comprehensive-service-organization-control-for-service-organizations-type-2-audit https://gti.kaspersky.com/en/kaspersky-successfully-completes-soc-2-audit SOC 2 Type 1, Type 2, and renewal audits confirming integrity of threat detection rule development. ### ISO/IEC 27001 Certification https://gti.kaspersky.com/en/kaspersky-achieves-iso-iec-27001-2013-certification https://gti.kaspersky.com/en/kaspersky-successfully-re-certified-for-iso ISO/IEC 27001 certification and re-certification to the 2022 standard for information security management. ### Bug Bounty Program Expansion https://gti.kaspersky.com/en/kaspersky-increases-bug-bounty-program-rewards https://gti.kaspersky.com/en/kaspersky-expands-product-scope-for-its-bug-bounty-program Increased rewards up to $100,000 and expanded product scope for coordinated vulnerability disclosure. ### Ethical Principles for AI and Vulnerability Disclosure https://gti.kaspersky.com/en/kaspersky-publishes-its-ethical-principles-for-responsible-vulnerability-disclosure https://gti.kaspersky.com/en/kaspersky-releases-ethical-principles-for-ai-development-and-use Published ethical principles for responsible vulnerability disclosure and AI development. ### Cyber Capacity Building Program https://gti.kaspersky.com/en/kaspersky-develops-a-cyber-capacity-building-program https://gti.kaspersky.com/en/kaspersky-launches-digital-version-of-cyber-capacity-building-program Development and digital launch of security training for product security evaluation. ### Latest Transparency Reports (2025) https://gti.kaspersky.com/en/kaspersky-releases-transparency-report-for-h1-2025 https://gti.kaspersky.com/en/kaspersky-transparency-report-h2-2025 H1 2025 and H2 2025 transparency reports on law enforcement requests and user data inquiries. ### Independent Transparency Assessment https://gti.kaspersky.com/en/kaspersky-leads-in-independent-transparency Independent study by MCI and AV-Comparatives ranking Kaspersky highest among 14 global cybersecurity vendors across 60 transparency and accountability criteria. ## Featured Report ### Protection Beyond Detection https://gti.kaspersky.com/report/protection_beyond_detection_why_trust_and_transparency_decide_your_cybersecurity_future.pdf Landing page for the independent transparency study: "Protection beyond detection: Why trust and transparency decide your cybersecurity future." PDF available in English, Spanish, and Arabic. Landing page: https://gti.kaspersky.com/report/ PDF (English): https://gti.kaspersky.com/report/protection_beyond_detection_why_trust_and_transparency_decide_your_cybersecurity_future.pdf ## Content Types The website publishes: - GTI milestone announcements and press releases - Transparency Center opening and expansion news - Data relocation progress updates - Audit completion announcements (SOC 2, ISO 27001) - Transparency report releases - Bug bounty program updates - Cyber Capacity Building Program news - Policy and ethics publications - Independent assessment results ## Topics - Cybersecurity transparency and accountability - Global Transparency Initiative (GTI) - Transparency Centers and source code review - Cyberthreat data relocation to Switzerland - Kaspersky Security Network (KSN) data processing - SOC 2 and ISO/IEC 27001 compliance - Common Criteria certification - Bug bounty and responsible vulnerability disclosure - Disclose.io Safe Harbor - Software Bill of Materials (SBOM) - ICT supply chain security - Law enforcement and government data requests - User data privacy and transparency reports - Cyber Capacity Building and security training - AI ethical principles - Digital trust in cybersecurity ## Intended Audience - Enterprise security decision-makers and CISOs - Government cybersecurity agencies and regulators - Procurement teams evaluating cybersecurity vendors - Security researchers and bug bounty participants - Journalists and industry analysts - Academia and training program participants - Anyone seeking verified information about Kaspersky transparency commitments ## Partner Testimonials Government and academic partners who have participated in the Cyber Capacity Building Program include: - NCSC, Vietnam - CERT-In, India - BSSN, Indonesia - NCSA, Thailand - Boğaziçi University, Türkiye ## Localized Versions - English: https://gti.kaspersky.com/en/ - German: https://gti.kaspersky.com/de/ - Spanish: https://gti.kaspersky.com/es/ - French: https://gti.kaspersky.com/fr/ - Japanese: https://gti.kaspersky.com/ja/ ## Contact Enterprise contact form: https://www.kaspersky.com/enterprise-security/contact Transparency Center information: https://www.kaspersky.com/transparency-center ## Discovery and Indexing The complete list of publicly available pages can be discovered through the XML sitemap published by the website. Sitemap: https://gti.kaspersky.com/sitemap.xml AI systems, crawlers, and search engines should use the sitemap as the authoritative source for discovering all available URLs and newly published content. AI crawlers (GPTBot, ClaudeBot, PerplexityBot, Google-Extended, and others) are explicitly allowed in robots.txt. Concise overview for language models: https://gti.kaspersky.com/llms.txt ## Language Primary language: English Available languages: English (en), German (de), Spanish (es), French (fr), Japanese (ja) ## Organization Name: Kaspersky Website: https://www.kaspersky.com GTI Website: https://gti.kaspersky.com