Security
Stateset is SOC 2 Type 1 Compliant
Our Commitment to Security
At Stateset, we understand that security is paramount. We’re committed to protecting your data and maintaining your trust. Our robust security measures and compliance with industry standards ensure that your information is always safeguarded.
Industry-Standard Certifications
SOC 2 Type 1
We are SOC 2 Type 1 compliant, demonstrating our commitment to security, availability, processing integrity, confidentiality, and privacy.
We Practice What We Preach
At our core, Stateset is a technology company that prioritizes your trust above all else. We employ enterprise-grade security measures and undergo regular audits to ensure your data is always protected. Our systems are designed to meet SOC 2 and ISO 27001 standards, and we conduct regular penetration testing and security reviews.
This unwavering commitment to security is deeply ingrained in our company culture.
Application Security
- Data Encryption: All data is encrypted in transit using TLS 1.2 and at rest using AES encryption.
- Third-Party Testing: We conduct independent third-party penetration, threat, and vulnerability testing.
- Access Controls: We implement robust user access controls with single sign-on capabilities.
- Cloud Security: Stateset’s cloud environments are backed by AWS’s industry-leading security measures.
- Role-Based Access: We employ role-based account access workflows to ensure appropriate data access.
Continuous Security Commitment
Penetration Testing
We perform independent third-party penetration tests at least annually to ensure the security posture of our services remains uncompromised.
Security Awareness Training
All team members are required to complete security awareness training covering industry-standard practices and topics such as phishing and password management.
Third-Party Audits
Our organization regularly undergoes independent third-party assessments to test our security controls.
Roles and Responsibilities
We have well-defined and documented roles and responsibilities related to our information security program and the protection of our customers’ data.
Information Security Program
Our comprehensive information security program is communicated throughout the organization and follows the criteria set forth by ISO 27001 and SOC 2.
Continuous Monitoring
We employ continuous monitoring of our security and compliance status to ensure there are no lapses in our protective measures.
At Stateset, your security is our priority. We are committed to maintaining the highest standards of data protection and privacy to ensure your trust in our platform is always well-placed. For more information, please see trust.stateset.com.