Press Release

Everstake Becomes First Crypto Staking Company to Hold All Five Institutional-Grade Certifications

Everstake Becomes First Crypto Staking Company to Hold All Five Institutional-Grade Certifications

Miami, FL, USA, October 16th, 2025, Chainwire

Everstake, the largest global non-custodial staking provider for institutional and retail clients, has achieved two new milestones in its security and compliance program: alignment with the NIST Cybersecurity Framework (NIST CSF 2.0) and full compliance with the California Consumer Privacy Act (CCPA). Together with existing SOC 2 Type II, ISO/IEC 27001:2022, and GDPR compliance, these achievements make Everstake the first crypto staking company to hold all five certifications that define institutional-grade infrastructure. The independent audits were conducted by Prescient Security, a global leader in cybersecurity assurance.

According to EY, 86% of institutional investors already have or plan to gain exposure to digital assets in 2025, with 35% exploring staking for yield, while 55% cite compliance as a key barrier to entering the crypto space. Everstake's five-pillar certification framework bridges this gap, aligning staking with the same security and privacy standards trusted by global financial institutions.

Everstake has completed an independent NIST CSF assessment, with a Cybersecurity Maturity Score of 4.16. Global benchmarks indicate that only 4% of organizations worldwide achieve the “Optimized” level on NIST-aligned maturity scales, positioning Everstake among a select group recognized for its advanced, adaptive cybersecurity practices.

This accomplishment reaffirms Everstake's ongoing investment in security, governance, and technology. A Level 4 score confirms that the company not only meets global standards but also proactively anticipates and adapts to emerging threats—enhancing resilience and institutional confidence.

The California Consumer Privacy Act compliance further strengthens Everstake's data protection framework, bringing transparency, user rights, and privacy standards to the U.S.-based customers — complementing its GDPR protections for European users.

"Being the first staking company to reach SOC 2 Type II, ISO 27001, GDPR, CCPA, and NIST CSF compliance further cements Everstake's role in setting the industry benchmark for institutional-grade security," said David Kinitsky, CEO at Everstake. "By aligning with global best practices across security, privacy, and risk management, Everstake ensures that institutional partners can rely on staking services that meet standards comparable to those used in the traditional financial sector."

"Achieving a NIST Cybersecurity Maturity Score of 4.16 reflects the depth, consistency, and forward-thinking nature of Everstake’s security program,” said Denys Avierin, CIO at Everstake. “This result confirms that our controls are not only fully aligned with the NIST CSF 2.0 framework but are operationally optimized and continuously improved to meet the highest institutional expectations. We don’t simply follow compliance requirements — we advance them, setting a new standard for trust, resilience, and innovation in institutional-grade staking."

The complete certification reports are available upon request.

About Everstake

Everstake is the largest global non-custodial staking provider for institutional and retail clients, trusted by over 1,000,000 users across 80+ Proof-of-Stake networks. Founded in 2018 by blockchain engineers, the company supports $7 billion in staked assets, delivering institutional-grade infrastructure with 99.98% uptime and zero material slashing events since inception.

Supporting asset managers, custodians, wallets, exchanges, and protocols, Everstake offers API-first, compliant infrastructure backed by SOC 2 Type II, ISO 27001:2022, and NIST CSF certifications, as well as GDPR and CCPA compliance, and regular smart contract audits. Its globally distributed team of 100+ professionals is committed to making staking accessible to everyone while strengthening the foundations of decentralized finance.

Everstake is a software platform that provides infrastructure tools and resources for users but does not offer investment advice or investment opportunities, manage funds, facilitate collective investment schemes, provide financial services, or take custody of, or otherwise hold or manage, customer assets. Everstake does not conduct independent diligence or substantive review of any blockchain asset, digital currency, cryptocurrency, or associated funds. Everstake’s provision of technology services allowing a user to stake digital assets is not an endorsement or a recommendation of any digital assets by it. Users are fully and solely responsible for evaluating whether to stake digital assets.

About Prescient Security

A Global and Independent Audit and Penetration Testing Company, Prescient Security delivers unparalleled quality in audits, attestations, and certifications to ensure excellence and client success. Using a Risk-Based Audit Approach versus a Requirement-Based Audit Approach, paired with the ability to customize audit deliverables based on specific client needs, Prescient Security operates from a cybersecurity standpoint first, is comprehensive yet granular, and in a fraction of the time.

Contact

PR Manager

Annabella N. Lapshyna

Everstake

marketing@everstake.one

Disclaimer: Chainwire is the source of this content. This Press Release is for informational purposes only. The information does not constitute investment advice or an offer to invest.