Snowflake Completes NZISM Restricted Assessment on AWS in New Zealand
Snowflake has completed an independent NZISM Restricted assessment for its AWS Auckland deployment, enabling New Zealand government agencies to use the platform for secure data workloads with reduced accreditation effort.
Snowflake announced the completion of an independent third-party assessment confirming its platform in the AWS Auckland region meets the New Zealand government’s Restricted level security controls under the New Zealand Information Security Manual (NZISM). The assessment validates Snowflake’s alignment with government requirements for handling sensitive data, providing agencies with a verified foundation for secure analytics and collaboration. Government customers can now leverage this assessment to streamline their own certification and accreditation processes, reducing the need for full infrastructure audits.
The NZISM assessment was conducted by an independent third-party assurance provider with regional expertise, evaluating Snowflake’s controls against specified requirements. By offering pre-verified platform-level controls, Snowflake enables agencies to focus their certification efforts on configurations and integrations rather than infrastructure audits. This accelerates the certification and accreditation timeline, allowing authorities to issue authority to operate (ATO) more efficiently while maintaining confidence in residual risk management.
The milestone builds on Snowflake’s existing support for public sector workloads in New Zealand, now assessed at the Restricted level. Agencies can use the platform to support AI and data workloads, including unifying siloed data, securely sharing governed information, and executing diverse analytical tasks across environments. The platform’s design emphasizes security, governance, and interoperability, aligning with both immediate operational needs and long-term digital transformation goals for government teams.
Completing the NZISM Restricted assessment reinforces Snowflake’s commitment to security and public sector support, complementing its broader compliance portfolio such as SOC 1 Type 2, SOC 2 Type 2, ISO 27001, and ISO 42001. Glenn Powell, Industry Principal for Global Public Sector at Snowflake, highlighted the milestone as enabling agencies to balance onshore data security with innovation without compromise.