Trust Center · trust.eigenomic.com
Resources
View allSecurity policies, publicly available.
Controls
View allThese controls are self-attested against our published policies; our SOC 2 audit will provide independent verification.
Infrastructure security
- Dedicated AWS account per client and product
- SSO with MFA for AWS access
- Least-privilege, need-to-know access
Organizational security
- Code of Conduct acknowledged by all personnel
- Confidentiality survives the engagement
- Asset inventory maintained
Engagement & product security
- Solutions run in the customer's cloud
- Customer access is scoped and logged
- Source code access restricted
Internal security procedures
- BC/DR plan established
- BC/DR plan tested and reviewed
- Periodic access reviews
Data and privacy
- Data classification established
- Retention limited to need
- Secure deletion
AI governance
- AI governance owned by the CISO
- Third-party AI providers evaluated
- AI data segregated and access-controlled