Certification consulting · Compliance · Technology
Regulatory certainty for companies that operate across borders.
We prepare, implement and support your organization in obtaining ISO 27001, ISO 9001, OEA and IMMEX certifications, with the technology infrastructure compliance requires.
- ISO/IEC 27001:2022
- ISO 9001:2015
- OEA
- IMMEX
Delour in figures
- years of experience
- +15
- companies supported
- +120
- certification success rate
- 98%
- audits per year
- +40
01 — Services
One team for the standard, the filing and the technology.
We support every certification end to end: from the initial assessment to the final audit and ongoing maintenance.
ISO management systems
Information security and quality under international standards.
- 01
ISO/IEC 27001:2022
ISO/IEC 27001
An information security management system that protects critical data and demonstrates control to clients and auditors.
Learn more: ISO/IEC 27001 - 02
ISO 9001:2015
ISO 9001
A quality management system that structures processes, reduces variation and meets client and tender requirements.
Learn more: ISO 9001
Foreign trade
Programs and registrations before the SAT and the Ministry of Economy.
- 03
OEA · SAT
OEA
We prepare your company for registration as an Authorized Economic Operator and strengthen the security of your supply chain.
Learn more: OEA - 04
IMMEX · SE
IMMEX
We manage the application, compliance and maintenance of your Manufacturing, Maquiladora and Export Services (IMMEX) program.
Learn more: IMMEX - 05
IVA/IEPS · SAT
VAT/IEPS Certification
We prepare your application for the VAT (IVA) and, where applicable, excise tax (IEPS) tax credit on temporary imports.
Learn more: VAT/IEPS Certification - 06
ANNEX 24 · ANNEX 30
Annex 24 & Annex 30
Inventory control for temporary imports with traceability, reconciliations and evidence ready for the authority.
Learn more: Annex 24 & Annex 30
Technology & training
Technical controls, internal audits and training.
- 07
INFRA · COMPLIANCE
Technology infrastructure
Networks, backups, access control and video surveillance designed to meet the requirements auditors review.
Learn more: Technology infrastructure - 08
AUDIT · TRAINING
Internal audits & training
Independent internal audits and training programs to keep your systems current between external audits.
Learn more: Internal audits & training
Why Delour
The rigor of a law firm. The precision of a technical team.
- 01
Regulatory rigor
Every recommendation is grounded in the text of the standard or current regulation, not in assumptions.
- 02
Integrated legal and technical view
Compliance, foreign trade and technology consultants work on a single plan.
- 03
Technology applied to compliance
We design the technical controls the auditor will review and document their evidence.
- 04
Support through the final audit
We stay by your side during the audit or authority visit and while findings are closed.
02 — Methodology
A clear process, from start to finish.
Five stages with defined deliverables. You always know where your project stands.
See full methodology01
Assessment
We evaluate your current state against the standard or program requirements.
02
Planning
We define scope, owners, schedule and deliverables.
03
Implementation
We document, implement controls and train your team.
04
Internal audit
We verify everything works before the external review.
05
Certification support and maintenance
We accompany you before the certification body or authority, and afterwards.
03 — Technology infrastructure
The technology compliance requires, documented.
Certifications are audited on evidence. We design and implement the technical controls that support your management system and your registration with the authority.
- Networks and perimeter security
- Backups and business continuity
- Logical and physical access control
- Video surveillance for OEA
- Inventory control systems (Annex 24/30)
- Technical evidence documentation
Self-assessment
Which certification does your company need? Find out in 2 minutes.
Seven simple questions and an indicative recommendation, with no commitment.
Start self-assessment04 — Resources
Insights and practical guides
ISO
· 6 min
ISO 27001:2022: what changed and how to prepare
The key changes in the 2022 edition of ISO/IEC 27001, what they mean for your Information Security Management System and how to organize your preparation.
Read articleForeign trade
· 5 min
OEA vs. VAT/IEPS Certification: differences and which suits your company
Two modalities of the same SAT scheme with different goals. What each one offers, what it requires and how to decide where to start.
Read articleForeign trade
· 5 min
Annex 24 and Annex 30: inventory control for IMMEX companies
What each annex requires, why balances do not reconcile and how to build inventory control that withstands an authority review.
Read article
05 — FAQ
Frequently asked questions
06 — Contact
Let's talk about your next certification.
Tell us about your company. A specialist will reply within one business day.
Contact details
Phone
+52 55 0000 0000WhatsApp
Message us on WhatsAppOffice
Av. Paseo de la Reforma 000, Piso 00, Col. Juárez, CDMX, C.P. 06600View on Google MapsHours
Monday to Friday, 9:00 a.m. to 6:00 p.m. (Mexico City)