Odyssey Logistics Assurance & Trust Portal is designed to provide customers, partners, and stakeholders with clear visibility into the strength and maturity of our cybersecurity and compliance program. Our security framework is aligned to the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), ensuring a structured, risk-based approach across the core functions of Identify, Protect, Detect, Respond, and Recover. Within the portal, visitors can review how these critical security program functions are operationalized through governance policies, technical safeguards, continuous monitoring, incident response planning, and third-party risk management. By organizing our controls and practices in alignment with NIST CSF, we provide transparency into how we manage cyber risk, protect sensitive data, and support resilient logistics operations for our global customers.



Incident Communication & Service Status
- A documented process governs communication during high-priority production incidents and outages, with internal legal and executive escalation required before any external disclosure.
- External notifications align with applicable state and federal legal requirements; regulatory and breach-notification obligations are governed by the incident response plan.
- The process defines timely initial notification, regular status updates through resolution, and a structured post-incident root-cause analysis.
Framework Alignment: NIST CSF RS.CO, RC.CO; CIS Control 17; SOC 1 Type II; GDPR Art. 33, 34; ISO 27001:2022 A.5.26, A.5.5
The controls described in this portal are part of Odyssey Logistics’ security program and are in place across the organization. Across a large environment of modern and legacy systems, implementation may vary by application, and some legacy systems may not yet include every component described. These controls are our organizational standard and continue to be extended across the environment.