Palmer Logo

Trust Portal

Start your security review
View & download sensitive information
Ask for information
ControlK

Welcome to Palmer’s Trust Portal which provides detailed information on how privacy and security are embedded into our systems, processes, and governance from the outset, forming the foundation of how we operate.

We align with:

GDPR Article 25 – Privacy by Design: Data protection is considered at design stage and throughout the lifecycle of our services.

EBA ICT Risk Management Guidelines: Our ICT controls ensure resilience, integrity, and protection against cyber threats.

DORA (when acting as delegate to AIFMs): Our operational resilience framework aligns with DORA and CSSF Circulars 22/804, 22/806 and 25/881.

Secure Cloud-Native Architecture: Layered security and encryption protect data in transit, at rest, and during processing.

This is our Privacy by Design approach; embedded, continuous, and proactive.

  • Natixis
  • Bankinter
  • Santander
  • Marwyn
  • ETF Partners
  • Centerbridge Partners

Documents

REPORTS2026 Pentest Report
Knowledge Base (FAQ)
  • Name the organization's Cloud Service Provider (CSP).
  • Does your organization have a TOS?
  • Describe certificate-based authentication used by the organization.
  • Does your organization have a Risk Management Policy?
  • Are anti-malware and anti-virus detection and prevention technology services configured on managed endpoints?
View more

Trust Portal Updates

2026 External Network Penetration Test

General

We are pleased to confirm that Palmer has successfully carried out a external network penetration test and the results have been published to our Trust Portal. Please request access should you require to view this documentation as part of your due diligence requirements for Palmer.

2025 ISAE Type II Controls Report

General

We are pleased to confirm that we have published our 2025 ISAE 3402 Type II Controls Report.

The ISAE 3402 Type II Controls Report for Palmer Fund Services (UK) Limited, Palmer Fund Services (Jersey) Limited and Palmer Agency Services (Spain) S.L., for the period from 1 January 2025 to 31 October 2025, provides an assessment of the internal control environment for Palmer's Operations and Information Technology Services

Document Availability Update

General

We are pleased to be able to share our report on the Luxembourg BCP site recovery testing completed in 2025. Please request access if you require a copy of this.

Palmer Website Update

General

We are pleased to announce the update to www.palmerfs.com with a new Trust Security and Privacy section which provides information on our approach to data privacy and security. https://www.palmerfs.com/trust-security-privacy/

Security Essentials Accreditation

Compliance

We are excited to announce that Palmer has received a Security Essentials Certificate, available for public viewing at trust.palmerfs.com under "Documents."

Cyber Essentials is a UK government-backed certification scheme, overseen by the NCSC and delivered via IASME, that helps organisations protect against common cyber threats. It sets a baseline security standard through five technical controls—firewalls, secure configuration, access control, malware protection, and patch management. Certification demonstrates a commitment to cyber security, can be required for certain UK government contracts, and provides assurance to clients and stakeholders that the organisation has key defences in place.

Built onSafeBase by Drata Logo