Trust Center - Ethyca
Ethyca
Privacy compliance automated
To grow your business, you need to prove your customers can trust you with their data.
Ethyca simplifies trust - so you can focus on business.
Compliance
SOC 2 Type II
Resources
Compliance Reports
Penetration Test Report
Penetration Test Executive Summary
Information Security Policies
Information Security Policy and Acceptable Use Policy
Access Control Policy
Asset Management Policy
Business Continuity and Disaster Recovery Plan
Other resources
Controls
Updated 30 minutes ago
- Infrastructure performance monitored
- Network and system hardening standards maintained
- Log management utilized
- Employee background checks performed
- Employee Handbook acknowledged by employees
- Data retention procedures established
- Control self-assessments conducted
- Penetration testing performed
- SOC 2 - System Description
- Organization structure documented
- Roles and responsibilities specified
- Data classification policy established
- Customer data deleted upon leaving
Subprocessors
Amazon Web Services
Public cloud hosting provider
USA
https://d1.awsstatic.com/legal/aws-dpa/aws-dpa.pdf
Twilio SendGrid
Transactional email service provider
USA
https://www.twilio.com/en-us/legal/data-protection-addendum
Ethyca’s latest SOC 2 Type 2 audit report. Our examination period ends on October 31st each year, with the new report typically available by the following January. Executive summary of Ethyca’s most recent pen test. For a detailed walkthrough of the full report, please reach out to us at security@ethyca.com - we’d be happy to meet and discuss. Vanta connects to a company's core systems to continuously monitor these controls.