Integrated management system
Exprivia’s Integrated Management System includes the implementation, implementation and improvement of a quality management system (ISO 9001 and ISO 13485), an information security management system (ISO/IEC 27001), an IT service management system (ISO/IEC 20000-1), as well as a business continuity management system (ISO 22301).
For the design and development of Exprivia’s medical systems, ISO 13485 and the directive on medical devices have been adopted.
Furthermore, in providing ICT solutions in the cloud, Exprivia felt the need to extend the scope of information security by following the ISO 27017 Guidelines “information security controls for cloud services” and ISO 27018 “protection of personally identifiable information (PII) in public clouds acting as PII processors“.
Other governance tools
Code of Ethics
Exprivia’s Code of Ethical Conduct and Rules of Conduct confirm the company’s commitment to ethically inspired behaviour in all the company’s fields of intervention.
It is aimed at Management and Control Bodies, Employees, Collaborators, Consultants, third parties (Recipients) who work within Exprivia, or who are in any case linked to it, so that the Ethical Principles on which it is inspired are clear, unequivocal and understandable.
Exprivia has identified some fundamental values that all recipients of the Code must adhere to:
- professional development, enhancement of human resources and equal opportunities
- protection of physical and moral integrity
- respect for the company’s assets
- Privacy Policy
- honesty, impartiality and loyalty
- Conflict of interest
- Clarity and transparency
- Fair competition
- respect and protection of the environment
ISO 37001 and Legality Rating
Corruption Prevention and Legality Rating
Consolidate relations with stakeholders in compliance with the principles of clarity, fairness and legality.
Exprivia has obtained ISO 37001 anti-corruption certification, the international reference standard for anti-corruption management systems, which contributes to the development of an ethical culture in companies.
By obtaining the anti-corruption certification, Exprivia’s desire to operate according to principles of transparency, in accordance with the current regulatory framework, is recognized.
The certification recognizes Exprivia’s organization and development model that is based on a culture of legality and that promotes constant actions to improve business processes
Also in 2025, the Italian Competition Authority awarded Exprivia SpA the “Legality Rating”, with the maximum score of 3 stars (★★★). This tool, established by Decree-Law no. 1/2012, recognizes in our company the introduction of ethical principles in corporate behavior, giving us the opportunity to enjoy benefits in accessing resources and opportunities in both the public and private sectors.
The Rating, already achieved by Exprivia with the AGCM provision of 04/08/2022, was renewed in conjunction with the two-year expiry. The confirmation of the attribution of the legality rating with a maximum score attests to Exprivia’s compliance with high standards of legality as well as the existence of transparent, ethical and virtuous corporate management.
EU 2019/1937
Whistleblowing
We have introduced a digital platform that allows all stakeholders to report – through an online portal – hypotheses of illegal conduct or irregularities and violations of company procedures and provisions.


