Certifications & attestations
3 frameworks · 100% currentIndependently assessed and continuously maintained.
Policies
The standards that govern how we operate and protect customer data.
13 published · reviewed annually
01020304050607080910111213
Information Security & Privacy Governance
Owner: CISO·Reviewed Jul 2026
Compliance & Regulatory Monitoring
Owner: Head of GRC·Reviewed Jul 2026
Third-Party Risk Management
Owner: CISO·Reviewed Jun 2026
Security & Privacy Awareness Training
Owner: People Ops·Reviewed May 2026
Acceptable Use Policy
Owner: CISO·Reviewed Jul 2026
Authentication & Password
Owner: SecOps·Reviewed Aug 2026
Data Classification & Handling
Owner: DPO·Reviewed Jun 2026
Backup & Recovery
Owner: Platform·Reviewed Apr 2026
Secure Software Development Lifecycle
Owner: Engineering·Reviewed Aug 2026
Change Management
Owner: Platform·Reviewed Jul 2026
Incident Response & Breach Notification
Owner: SecOps·Reviewed Aug 2026
Business Continuity Planning
Owner: COO·Reviewed Feb 2026
Disaster Recovery
Owner: Platform·Reviewed Feb 2026
28
Security controls
Controls are grouped by domain and checked on an ongoing basis.
Identity & access
4 controlsAccess Rights2h ago
Credential Management2h ago
Acceptable Use6h ago
Human Resources Security1d ago
Data protection
5 controlsData Privacy2h ago
Data Masking2h ago
Encryption Key Management4h ago
Secure Data Transfer2h ago
Asset Inventory12h ago
Engineering & change
4 controlsSecure SDLC Integration3h ago
Change Management1h ago
Vulnerability Management45m ago
Endpoint Protection2h ago
Monitoring & response
4 controlsSecurity Monitoring & Detection3m ago
Security Incident Management6h ago
Network Security18m ago
Utility Tool Monitoring2h ago
Resilience & continuity
3 controlsBusiness Continuity & ICT Readiness1d ago
Disaster Recovery Planning1d ago
Resource Capacity Management4h ago
Assurance & governance
5 controlsInternal Audit & Management Review5d ago
Risk Management1d ago
Policy Compliance3h ago
Legal, Regulatory & IP Compliance2d ago
Standard Operating Procedures (SOPs)4h ago
Physical & third party
3 controlsPhysical & Environmental Security1d ago
Supplier & Third-Party Security6h ago
ISO 90017d ago
Subprocessors
Third parties that process data on our behalf under contractual safeguards.
Due diligence
Need the full evidence packet?
Policies, certificates, penetration test summaries, and our pre-filled security questionnaire are available under NDA.