Compliance

Types of Compliance

Whether your customers, insurers, or contracts demand it, our protection is built around the frameworks small businesses are asked to meet.

SOC 2 Aligned

Our controls, monitoring, and response processes are built around the SOC 2 trust criteria — security, availability, and confidentiality.

CMMC Level 1/2 Aligned

Practices mapped to CMMC Level 1 and Level 2 for businesses in the defense supply chain handling federal contract information.

NIST 800-171 (Controls Aligned)

Technical safeguards aligned to the NIST 800-171 control families so controlled unclassified information stays protected.

HIPAA (with BAA)

HIPAA-ready protection for practices handling patient data, backed by a Business Associate Agreement signed with your organization.

PCI DSS (with client audit)

Card-data protections aligned to PCI DSS, supported through your specific merchant audit and evidence requirements.

Microsoft AI CPP, CSP & Partner Security

Microsoft AI Cloud Partner Program, Cloud Solution Provider, and Partner Security requirements met and maintained.

Not sure which one applies to you?

Tell us who your customers are and what data you handle. We'll tell you exactly what you need.

Talk to us