Compliance
Data Integration gets an independent SOC2 Type II certification from well-known audit firms every year to maintain security to the highest levels. SOC2 defines the requirements for handling customer data based on security, availability, processing integrity, confidentiality, and privacy. The audit report is shared with potential or existing clients (under NDA) who want to confirm our security posture across all relevant business processes and essential infrastructure.
ISO/IEC 27001:2013
This certification confirms that Data Integration has implemented a robust information security management system (ISMS) that meets the strict requirements of the ISO 27001 standard. To maintain compliance with ISO 27001, Data Integration undergoes regular audits and assessments to validate the efficacy and currency of our security controls. As a result, Data Integration customers can be assured that their data is processed and stored securely and that the organization is regularly audited to maintain compliance with the standard.

GDPR
The General Data Protection Regulation affects every business in the data community that has a presence in the EU or processes the personal data of European residents. Data Integration is fully compliant with current European data privacy laws.

HIPAA
Through our annual SOC2 audit, Data Integration maintains a compliance benchmark with the HIPAA standard. All HIPAA-related controls are bench marked by the company’s auditor and documented under the SOC2 report.

SOC 2 (Type II)
Data Integration relies on AWS in the US global infrastructure, including the facilities, network, hardware, and operational software (For example, host OS, virtualization software) that support the provisioning and use of basic computing resources and storage. Data Integration undergoes an independent SOC 2 (Type II) review every year. This infrastructure is designed and managed according to security best practices and security compliance standards: FedRAMP, HIPAA, AICPA SOC 1, SOC2, SOC 3, PCI-DSS, and more. AWS constantly updates its compliance programs.
