Security, privacy and compliance
Certified for the industries that ask hard questions.
Insurance and banking organizations do not accept a trust page as evidence. We hold ISO/IEC 27001 Information Security certification and SOC 2 Type I and II attestations.
ISO/IEC 27001 certified
An audited information security management system covering our delivery hubs, corporate environment and client operations.
With the risk register, control set and internal audit cycle behind it.
SOC 2 Type I attested — Type II in progress
Independent examination of security, availability and confidentiality controls over an operating period.
Evidence that the controls work, not just that they exist.
Material controls
Customer conversations and transcripts are the most sensitive data
A recorded call can contain sensitive information. Our controls are built around that reality.
Working with your risk team
We have been through the questionnaire before.
Vendor security reviews, penetration test summaries, DPAs and BAAs, evidence for your auditors.
Regulatory alignment
Programs run against GLBA, HIPAA, TCPA, FDCPA and GDPR requirements as the engagement demands, with the disclosures written into the conversation flow.
Business continuity
Two geographically separate delivery hubs, tested failover for voice routing, and documented recovery objectives.
Incident response
Defined severity levels, named contacts, and notification timelines committed to in contract.
Get Started
We will return it completed, with the ISO certificate and SOC 2 report attached under NDA.