AEGIS OVERSIGHT
SECURITY & COMPLIANCE
At AegisOversight, security and compliance are not afterthoughts—they are foundational to everything we do. We understand that you trust us with your most sensitive AI systems and data, and we take that responsibility seriously.
Comprehensive Security Controls
Multi-layered security approach protecting your data at every level.
All data, both at rest and in transit, is encrypted using industry-standard protocols.
- AES-256 encryption for data at rest
- TLS 1.2 or higher for data in transit
- Encrypted backups and archives
- Key rotation and management
Strict role-based access control (RBAC) ensures users only access authorized data.
- Role-based permissions (RBAC)
- Multi-factor authentication (MFA)
- Single Sign-On (SSO) support
- Audit logging of all access
Hosted on leading cloud infrastructure with SOC 2 and ISO 27001 certifications.
- SOC 2 Type II certified infrastructure
- ISO 27001 compliant hosting
- Firewall and intrusion detection
- 24/7 security monitoring
Secure software development lifecycle with regular testing and code reviews.
- Regular code reviews
- Dependency scanning
- SAST/DAST security testing
- Vulnerability management
Active pursuit of major compliance certifications and regulatory adherence.
- SOC 2 Type II (in progress)
- ISO 27001 (in progress)
- GDPR compliance support
- EU AI Act ready
Comprehensive incident response program with defined procedures and timelines.
- 24/7 incident monitoring
- Defined response procedures
- Customer notification protocols
- Post-incident reviews
Compliance Certifications
Active pursuit of industry-leading compliance standards and certifications.
Security, availability, processing integrity, confidentiality, and privacy controls.
Status: Q2 2025
International standard for information security management systems.
Status: Q3 2025
Full compliance with EU General Data Protection Regulation requirements.
Status: Current
California Consumer Privacy Act compliance for data subject rights.
Status: Current
Ongoing Security Practices
Continuous commitment to maintaining and improving our security posture.
Quarterly
Independent third-party security assessments and penetration testing to identify and remediate vulnerabilities.
Ongoing
Comprehensive security awareness training for all team members, including phishing simulations and best practices.
Continuous
Automated scanning and patching of systems, with prioritized remediation based on risk severity.
Tested Annually
Documented backup and recovery procedures with regular testing to ensure business continuity.
Responsible Disclosure Program
We welcome security researchers to help us maintain the highest security standards.
Report a Security Vulnerability
If you believe you have discovered a security vulnerability in our platform, we encourage you to let us know right away. We will investigate all legitimate reports and work with you to resolve the issue promptly.
How to Report:
- Email us at security@aegisoversight.com
- Provide detailed information about the vulnerability
- Include steps to reproduce if possible
- Allow us reasonable time to address the issue before public disclosure
We are committed to working with the security community to resolve issues promptly and will acknowledge your responsible disclosure in our security advisories when appropriate.
Questions About Our Security?
Our security team is here to answer any questions and provide additional documentation.
Email: security@aegisoversight.com
For security vulnerabilities: security@aegisoversight.com
Copyright © 2025 AegisOversight.com. All Rights Reserved.
www.aegisoversight.com
Translate