We don't sell you security — we build your trust

Certi360 is a Laval firm of 5 certified auditors helping Quebec SMBs achieve ISO 27001 compliance and Bill 25 readiness — no jargon, concrete results since 2021.

Talk to an expert
Our mission

Who is Certi360?

Certi360 is a Laval firm founded in 2021 by Patrick Boucher. It brings together five certified auditors who help Quebec SMBs achieve ISO 27001 compliance, Bill 25 readiness and related certification frameworks (SOC 2, PCI DSS) with a pragmatic, jargon-free approach. The goal is to structure information security and make client teams self-sufficient.

Patrick Boucher is one of the few professionals in Quebec to have held all four roles in the ISO 27001 lifecycle: implementer (since 2007), consultant, internal auditor, and external auditor for recognized certification bodies.

Certi360 structures certification, governance and risk management

Certi360 helps Quebec SMBs structure their information security and earn certifications — ISO 27001, SOC 2, PCI DSS and Bill 25 — with a pragmatic approach built on more than 25 years of combined experience.

Founded in Laval in 2021 by Patrick Boucher, our firm focuses on team autonomy: we train you so you won't need us long term.

Certi360

Why choose Certi360?

01

Practical, accessible solutions without jargon

We speak plainly, without jargon — just clear, concrete solutions adapted to your business reality. We train your teams so they become self-sufficient quickly. Our goal is for you not to need us long term.

02

Expertise grounded in field experience, not theory

Our experts bring more than 25 years of experience. We've seen audits, incidents, IT committees, resistance and edge cases. With hundreds of engagements behind us, we quickly spot weak points in a security program.

03

A proven method and practical tools for audit readiness

Our approach works. It has proven itself over years in varied contexts. We work with proven tools — work plans, project tracking and audit-ready documentation.

Simple and effective

How does Certi360 work with you?

Credibility and stability: engagements without padding

We're already in demand. We don't need to stretch engagements to survive. When you have work, we take it. When it's quiet, we step back. We work transparently — you see our timesheets and progress reports.

Results-oriented from the first interventions

Our clients see results from the first interventions. Less ambiguity, more impact. We don't add complexity — we simplify what is often perceived as burdensome.

Available during and after the engagement

Even after an engagement ends, we remain available. An emergency, a question, a doubt? We're there to support you on a one-off basis without restarting a big machine. We call that after-sales service.

The process

From first call to certification, in five steps.

01

Discovery

Free call to understand your goals, constraints and target timeline.

02

Gap analysis

Current state against your target standard and a prioritized roadmap.

03

Implementation

Policies, risk registers and controls, built with your teams.

04

Audit

Internal audit, management review and support through certification.

05

Maintenance

Ongoing monitoring and preparation for annual surveillance audits.

Our team

Five certified auditors and an operations coordinator based in Quebec: certification, governance, penetration testing, risk management and mandate coordination for SMBs in Greater Montreal and across Canada.

Photo of Patrick Boucher

Patrick Boucher

Founder & President

Patrick brings more than 25 years of experience in information security, ethical hacking and business continuity. He founded Certi360 in 2021 and helps Quebec SMBs achieve ISO 27001 certification and Bill 25 compliance with a direct, results-oriented approach.

LinkedIn
Photo of Louis Labelle

Louis Labelle

Governance & compliance expert

Louis specializes in IT governance, regulatory compliance and personal information protection. He helps organizations structure their security program, prepare for external audits and align practices with Bill 25 and ISO 27001.

LinkedIn
Photo of Karl Robidoux

Karl Robidoux

Operational security specialist

Karl focuses on operational security and critical infrastructure. He assesses technical environments, identifies configuration gaps and supports IT teams in implementing concrete, sustainable controls.

LinkedIn
Photo of Mélanie Lepage

Mélanie Lepage

Risk management advisor

Mélanie supports clients with risk assessment and treatment, document management and audit evidence preparation. She turns normative requirements into clear, day-to-day processes.

LinkedIn
Photo of Éric Gingras

Éric Gingras

Security architect & trainer

Éric designs secure architectures and trains technical and non-technical teams in cybersecurity. He delivers penetration tests, OWASP ASVS application audits and security awareness programs.

LinkedIn
Photo of Isabelle Bélisle

Isabelle Bélisle

Operations Coordinator

Isabelle coordinates operations at Certi360: mandate tracking, commercial planning and the editorial calendar. She keeps projects on track, prepares layout and publishing deliverables, and ensures client deadlines and annual audit follow-ups stay clear and up to date.

250+

Since founding in 2021, Certi360 has supported more than 250 Quebec SMBs with compliance and ISO 27001 certification.

5

Our team brings together 5 certified auditors (ISO 27001 Lead Auditor, CISSP) in information security.

4

Our security testing engagements have been delivered in 4 countries: Canada, the United States, France and Morocco.

Frequently asked questions

Who founded Certi360 and when?
Certi360 was founded in Laval in 2021 by Patrick Boucher. The firm brings together five certified auditors specializing in information security, certification and compliance.
Does Certi360 only support ISO 27001?
No. Certi360 also supports Bill 25 compliance and frameworks such as SOC 2 and PCI DSS, in addition to ISO 27001. The approach remains pragmatic and tailored to Quebec SMBs.
Where do you operate?
Certi360 is based in Laval and supports SMBs across Quebec and Canada. Engagements focus on structuring information security and preparing for certification audits.
What is your approach with clients?
Certi360 prioritizes client-team autonomy: we train so you will not need the firm long term. Conversations stay jargon-free, with concrete deliverables and transparent progress tracking.
How do I get started with Certi360?
Contact the team via the Contact page and describe your challenges. Certi360 quickly assesses whether the engagement fits its expertise and outlines next steps, including an assessment discussion.

Want to work with us?

Tell us about your challenges. We'll quickly see if we're the right team for you.

Talk to an expert