leading on cybersecurity
Our commitment to safeguarding your private data and maintaining security best practices is unwavering. To ensure that our customers and participants receive exemplary services, we have achieved SOC 2 Type II compliance, the highest standard available.
compliance
The RiseSmart platform is SOC 2® Type II certified. SOC 2 is a widely used framework for building trust between vendors and customers. It serves as an evaluation of operational effectiveness as defined by the American Institute of Chartered Public Accountants (AICPA) Trust Service principles, which are security, availability, processing integrity, confidentiality and privacy. RiseSmart is currently certified for the confidentiality, availability and security trust principles. Type 2 attestation shows we can demonstrate both the adequacy of design of controls and operational effectiveness of the controls, and verifies that we have third-party oversight into our processes and procedures to ensure we adhere to these commitments.
details
-
GDPR
-
CCPA
-
TRUSTe verified privacy
-
EU-US and Swiss-US privacy shield
security
Our security controls protect confidential data against unauthorised access and unauthorised disclosure of information. Our procedures prevent damage to systems that could compromise the availability, integrity, confidentiality and privacy of information or systems.
details
-
vulnerability assessment
-
penetration testing
-
bug bounty programme
-
encryption
-
data access control
-
physical security
-
backup
-
secure development life cycle
-
vendor due diligence
privacy
To ensure that personal information is kept private, RiseSmart provides regular training to staff, limits access to such data, maintains strict rules around how this information is shared and maintained, and provides customers and participants with the ability to manage and restrict their personal data.
details
-
training
-
privacy process
-
data subject access rights
-
cookie policy
-
risemart privacy policy